Trans-World Shipping Service
Attack Intelligence
Trans-World Shipping Service was compromised in a ransomware attack attributed to qilin in October 2025. The organization, operating in the Transportation/Logistics sector in United States, was added to the group's data leak site as part of an extortion campaign.
qilin operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
Trans-World Shipping Service, Inc. and Toledo Air Cargo, Inc. are full-service companies offering a wide variety of import and export services including US customs brokerage, international freight forwarding, air freight services, warehousing ...
Intelligence correlations link this incident to 1 vulnerability(ies) including CVE-2026-0257, which may have been leveraged as initial access vectors or for lateral movement.