RANSOMWARE VICTIMDUPLICATE CLAIM

Notaría 89

payload📍 Mexico (MX)📅 March 19, 2026
8
same group

Attack Intelligence

Notaría 89 was compromised in a ransomware attack attributed to payload in March 2026. The organization, operating in an undisclosed sector in Mexico, was added to the group's data leak site as part of an extortion campaign.

payload operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

Notaría 89 – Edomex, located in the State of Mexico, offers specialized legal services for various real estate transactions and contracts. Under the leadership of Licenciado Luis Octavio Hermoso y Colín, the notary public provides services such as the granting of powers, purchase contracts, real estate mortgages, and the constitution of societies. The notary public also handles testaments and other notarial services, ensuring all legal requirements are met for property transfers and other legal matters.

Additional Details

data_size
85 GB

Other Victims — payload (8)

Quick Facts

CountryMexico (MX)
Attack DateMar 19, 2026
Intel Sourceransomlook
StatusDUPLICATE CLAIM

Threat Group

payload
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.