BreachCensus

lynx

First seen July 29, 2024Active417 claimed victims

The claims below are reproduced as posted by lynx on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.

Listed organisation? Contact [email protected].

Profile

Lynx is a ransomware-as-a-service operation that emerged in mid-2024 as a rebrand of INC Ransomware (whose source code was sold for $300,000 on the RAMP forum), claiming ~300 victims across manufacturing, business services, technology, and transportation with an 80/20 profit split for affiliates.

Description from ransomware.live.

Claimed victims (as posted by the group — unverified)

Victim (as posted)Claimed onSourcePress coverage
Ascend Analytics (ascendanalytics.com)August 6, 2024ransomware_live
Warwick Hotels and ResortsAugust 1, 2024ransomware_live
PBS groupJuly 27, 2024ransomware_live
Pyle GroupJuly 24, 2024ransomware_live
Cambria Automobiles (summitgroup.local)July 24, 2024ransomware_live
Johnson Laschober & AssociatesJuly 23, 2024ransomware_live
Riverside Resort Hotel and CasinoJuly 23, 2024ransomware_live
Miller Boskus Lack Architects (ad.mbl-arch.com)July 18, 2024ransomware_live
Concut (ddm.local)July 18, 2024ransomware_live
True Blue EnvironmentalJuly 16, 2024ransomware_live
The Greenhouse PeopleJuly 16, 2024ransomware_live
Alvan Blanch DevelopmentJuly 15, 2024ransomware_live
InnoquestJuly 15, 2024ransomware_live
Reef-PCG (pcg.local)June 1, 2024ransomware_live
Excel SecurityMay 30, 2024ransomware_live
pactchangeslives.comJanuary 11, 2024ransomware_live
Atlas CommoditiesMay 22, 2023ransomware_live
← NewerPage 5 of 5

Claim data from ransomware.live and RansomLook (CC BY 4.0).