RANSOMWARE VICTIMTRANSPORTATION/LOGISTICSDUPLICATE CLAIM

www.toc.co.jp

www.toc.co.jp
lynx📍 Japan (JP)📅 December 6, 2025
8
same group

Attack Intelligence

www.toc.co.jp was compromised in a ransomware attack attributed to lynx in December 2025. The organization, operating in the Transportation/Logistics sector in Japan, was added to the group's data leak site as part of an extortion campaign.

lynx operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

TOC Building is a commercial facility that provides a comprehensive floor guide,...

Additional Details

Other Victims — lynx (8)

Quick Facts

CountryJapan (JP)
SectorTransportation/Logistics
Attack DateDec 6, 2025
Domainwww.toc.co.jp
Intel Sourceransomlook
StatusDUPLICATE CLAIM

Threat Group

lynx
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.