RANSOMWARE VICTIM⚠ DUPLICATE CLAIM
upea.com
www.upea.com
qilin📍 FI (FI)📅 October 29, 2025
1
linked CVEs
8
same group
Attack Intelligence
upea.com was compromised in a ransomware attack attributed to qilin in October 2025. The organization, operating in an undisclosed sector in FI, was added to the group's data leak site as part of an extortion campaign.
qilin operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
N/A
Intelligence correlations link this incident to 1 vulnerability(ies) including CVE-2026-0257, which may have been leveraged as initial access vectors or for lateral movement.
Additional Details
Correlated Vulnerabilities (1)
Other Victims — qilin (8)
D & J Beverage Service
US · Hospitality
Aug 2026
Wanted
NL · Not Found
Aug 2026
United Association Local Union 345
US · Other
Aug 2026
Service Evaluation Concepts
US · Professional Services
Aug 2026
Crown Group
PK · Other
Aug 2026
G.M.A. GRANDI MARCHE AUTOMOBILI - S.R.L
IT · Transportation
Aug 2026
tommer construction
US · Manufacturing
Aug 2026
City of Winchester
US · Government & Defense
Aug 2026
Quick Facts
CountryFI (FI)
Attack DateOct 29, 2025
Domainwww.upea.com
Intel Sourceransomware.live
StatusDUPLICATE CLAIM
Threat Group
External Links
Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.