RANSOMWARE VICTIMGOVERNMENT & DEFENSE
PenLink
Qilin📍 United States (US)📅 August 14, 2026
1
linked CVEs
8
same group
Attack Intelligence
PenLink was compromised in a ransomware attack attributed to Qilin in August 2026. The organization, operating in the Government & Defense sector in United States, was added to the group's data leak site as part of an extortion campaign.
Qilin operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
Software
Intelligence correlations link this incident to 1 vulnerability(ies) including CVE-2026-0257, which may have been leveraged as initial access vectors or for lateral movement.
Additional Details
Correlated Vulnerabilities (1)
Other Victims — Qilin (8)
Membership Organizations
—
Aug 2026
Lercher Werkzeugbau
AT · Manufacturing
Aug 2026
3f
DK · Not Found
Aug 2026
Urban Worldwide
NL · Other
Aug 2026
D & J Beverage Service
US · Hospitality
Aug 2026
Wanted
NL · Not Found
Aug 2026
United Association Local Union 345
US · Other
Aug 2026
Service Evaluation Concepts
US · Professional Services
Aug 2026
Quick Facts
CountryUnited States (US)
SectorGovernment & Defense
Attack DateAug 14, 2026
Intel Sourceransomlook
Threat Group
External Links
Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.