
Brazil: Arcos in Emperador’s claim
Emperador claims an attack on Arcos city hall in Brazil. The case remains unverified, with no public confirmation from the municipality.
Aug 23, 2026 · 2 min
Up-to-date cyber intelligence coverage. Filter by category or browse the full archive.

Emperador claims an attack on Arcos city hall in Brazil. The case remains unverified, with no public confirmation from the municipality.
Aug 23, 2026 · 2 min

Breachsense flagged amca.org.ar as a BLACKWATER victim on Aug. 17, 2026. Security Arsenal also cited it among two new leak-site victims.
Aug 23, 2026 · 3 min

FBI, CISA and HHS updated their Medusa alert, saying the group has hit more than 500 victims and kept targeting US health care.
Aug 22, 2026 · 2 min

Ransomware hit Colombia’s Justice Ministry, while Grandoreiro resurfaced in Mexico, with detections also reported in Peru
Aug 22, 2026 · 2 min

Quaker State Mexico appeared in a Qilin-attributed listing, with no independent public confirmation of a breach or data theft.
Aug 22, 2026 · 2 min

Threat reports place Colombia among recent ransomware victims, while F5 and Security Arsenal also flagged related activity.
Aug 21, 2026 · 3 min

ransomware.live lists 83 Peru-linked victims, without attribution to any group. VECERT also reported unconfirmed activity.
Aug 21, 2026 · 2 min

Kaspersky attributed The Gentlemen attacks to manufacturing, healthcare, technology, finance, construction
Aug 21, 2026 · 2 min

Ransomware.live and Breachsense list mecasem.org as a 3AM victim. GalaxyWarden says there is no public confirmation from the company.
Aug 21, 2026 · 2 min

Security Arsenal tracked new U.S. victims from DIREWOLF, COINBASECARTEL and XPL0ITRS across health, tech and professional services.
Aug 19, 2026 · 2 min

Brazil’s Arcos city hall appears on a leak site tied to Emperador, but the claim has not been independently verified.
Aug 19, 2026 · 2 min

Bitdefender’s August 2026 threat debrief placed Argentina among The Gentlemen’s victims as the ransomware group pushed deeper into manufacturing.
Aug 17, 2026 · 3 min

Bitdefender logged 21 claimed ransomware victims in Argentina in July, with The Gentlemen, Qilin and DragonForce among active groups.
Aug 17, 2026 · 3 min

US agencies warned on Gunra, while Unlimited Technology Systems raised its breach tally to 3.8 million patients.
Aug 16, 2026 · 3 min

Colombia’s Justice Ministry confirmed ransomware hit part of its infrastructure. No data theft was detected, and recovery is ongoing.
Aug 16, 2026 · 3 min

Chile is investigating possible attacks on Entel, Movistar and Telmex after U.S. alerts, with no confirmed breach so far.
Aug 16, 2026 · 2 min

Sears (Grupo Sanborns) was listed as a suspected Space Bears victim on a leak site and in aggregators, with no official confirmation.
Aug 16, 2026 · 2 min

THEGENTLEMEN, Gunra and INC Ransom added victims and alerts across the region, with a focus on VPNs, firewalls
Aug 15, 2026 · 3 min

Trezor said a ShipMonk breach exposed customer order data, including users in Brazil. Its own systems were not affected.
Aug 15, 2026 · 2 min

Colombia’s Justice Ministry confirmed a ransomware incident that disrupted part of its infrastructure and some digital services.
Aug 14, 2026 · 2 min

California’s Suisun City shut down its computer network after an attack disrupted 911 routing, police, fire and other services.
Aug 14, 2026 · 2 min

Chile’s PDI and prosecutors are investigating reported telecom cyberattacks tied to U.S. intelligence information.
Aug 14, 2026 · 2 min

The U.S. alerted Chile to alleged malware in Entel, Movistar and Telmex. Chile’s PDI is probing the so-called Chinese cable case.
Aug 14, 2026 · 3 min

Change Healthcare, OSF Healthcare and Unlimited Technology Systems surfaced in recent ransomware and breach reports tied to U.S. health care.
Aug 13, 2026 · 2 min

IntelFusions logged 68 leak site claims against South American organizations in 30 days, including cases in Brazil.
Aug 13, 2026 · 2 min

The Gentlemen added Lima’s San Luis district to its leak site, while IntelFusions tracked more claims against South American entities.
Aug 13, 2026 · 2 min

Brazil’s Finance Ministry warned about false ads and messages using government branding to trick people seeking debt renegotiation.
Aug 12, 2026 · 2 min

Oldelval reported a ransomware incident, blamed on The Gentlemen, while Qilin added victims in the same period.
Aug 12, 2026 · 2 min

Banamex, BBVA Mexico, Santander, Banco Azteca and Banorte urged customers to watch for unauthorized charges and account access.
Aug 11, 2026 · 2 min

Chile reported nearly $100 million in banking fraud in the first half of 2026, with more complaints and higher debit card fraud.
Aug 11, 2026 · 2 min

Brazil is seeing more impersonation scams, stolen phones and false public records, with bank losses reaching billions of reais.
Aug 11, 2026 · 2 min

Fraud complaints and related amounts rose in Argentina’s banking sector in H1 2026, according to the central bank.
Aug 11, 2026 · 2 min

Chile reported nearly $100 million in banking fraud, while Bogotá warned of fake payment messages. Brazil also saw sharp increases.
Aug 11, 2026 · 2 min

The Gentlemen hit SMBs across Latin America, including a victim in Argentina. The group abused edge devices and targeted manufacturing.
Aug 11, 2026 · 3 min

The Gentlemen hit LATAM companies, with confirmed victims in Brazil and new reports pointing to edge device abuse.
Aug 11, 2026 · 2 min

Suisun City declared an emergency after a malware attack disrupted 911 and other essential services. The FBI and EPA also warned of water incidents.
Aug 10, 2026 · 2 min

Colombia confirmed a ransomware attack, while Panama saw AguAseo posted on a leak site tied to Gammax.
Aug 10, 2026 · 2 min

A SISVISA-linked database was reportedly left open without authentication, exposing more than 102,000 files with sensitive data.
Aug 7, 2026 · 2 min

OSF Healthcare settled with HHS OCR over a 2021 Nephilim-linked breach. A separate report names a possible INCRANSOM health victim.
Aug 7, 2026 · 2 min
Oldelval said it suffered a RaaS ransomware incident that was fully contained, and crude oil transport kept running.
Aug 7, 2026 · 1 min

Kaspersky linked Colombia to StrikeShark, while the Justice Ministry confirmed a ransomware attack that disrupted digital services.
Aug 6, 2026 · 2 min

Kaspersky found StrikeShark, a SharkLoader campaign reaching Colombia. In Brazil, ANY.RUN reported abuse of official infrastructure.
Aug 6, 2026 · 2 min

STJ rulings may help victims recover losses, while a TCU audit says PCC and Comando Vermelho ran digital fraud tied to state benefits.
Aug 5, 2026 · 3 min

The bank published official channels to help customers spot impersonation attempts during the transfer of more than 250,000 Itaú clients.
Aug 5, 2026 · 2 min

Chile’s CMF is enforcing stronger customer authentication for transfers and digital payments, as fraud and identity theft risks rise.
Aug 5, 2026 · 2 min

Bank scams on WhatsApp, fake sites and identity theft are spreading in Argentina. The BCRA, Catamarca and CABA have issued alerts.
Aug 5, 2026 · 2 min

Interlock added Gardiner Family Chiropractic to its victim list, alleging patient data and internal financial information were exfiltrated.
Aug 5, 2026 · 2 min

Mexico ranks second in Latin America for ransomware victims, with more than 270 public cases by late July and services among the main targets.
Aug 5, 2026 · 4 min

ransomware.live flagged Global Secret Group in a ransomware incident against a Brazilian clinic or hospital. ESET reported more attacks in Latin America.
Aug 5, 2026 · 2 min

Operation Yida is investigating a Paraguay-Hong Kong fraud network, with 211 complaints, three arrests and traced USDT.
Aug 4, 2026 · 2 min