pandarose.ca
Attack Intelligence
pandarose.ca was compromised in a ransomware attack attributed to qilin in October 2025. The organization, operating in the Technology sector in Canada, was added to the group's data leak site as part of an extortion campaign.
qilin operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
A full range of technology consulting services—from infrastructure and specialized software to digital strategy and support. 1.This is a Non-Disclosure Agreement (NDA) between Fuels Inc. (the client) and Panda Rose Consulting Studios Inc. ...
Intelligence correlations link this incident to 1 vulnerability(ies) including CVE-2026-0257, which may have been leveraged as initial access vectors or for lateral movement.