RANSOMWARE VICTIMTECHNOLOGYDUPLICATE CLAIM

SLA.DK

SLA.DK
sinobi📍 DK (DK)📅 December 7, 2025
8
same group

Attack Intelligence

SLA.DK was compromised in a ransomware attack attributed to sinobi in December 2025. The organization, operating in the Technology sector in DK, was added to the group's data leak site as part of an extortion campaign.

sinobi operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

Our projects solve some of today's hardest urban problems while creating genuine amenity values for all. Based in Copenhagen, Aarhus and Oslo we form a multidisciplinary architectural lab that constantly strives to challenge and expand the boundaries of urban space, city planning and landscape architecture. Drawing on our strong Nordic roots we have realized numerous projects in Denmark, Europe, Asia and Africa.

Additional Details

Other Victims — sinobi (8)

Quick Facts

CountryDK (DK)
SectorTechnology
Attack DateDec 7, 2025
DomainSLA.DK
Intel Sourceransomware.live
StatusDUPLICATE CLAIM

Threat Group

sinobi
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.