RANSOMWARE VICTIMTRANSPORTATION/LOGISTICSDUPLICATE CLAIM

UK Rail Services

radiant📍 UK (UK)📅 October 12, 2025
1
linked CVEs
4
same group

Attack Intelligence

UK Rail Services was compromised in a ransomware attack attributed to radiant in October 2025. The organization, operating in the Transportation/Logistics sector in UK, was added to the group's data leak site as part of an extortion campaign.

radiant operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

Unknown. You will be contacted shortly. 3 Days for contact or else we will begin our process.

Intelligence correlations link this incident to 1 vulnerability(ies) including CVE-2026-17264, which may have been leveraged as initial access vectors or for lateral movement.

Additional Details

Correlated Vulnerabilities (1)

Other Victims — radiant (4)

Quick Facts

CountryUK (UK)
SectorTransportation/Logistics
Attack DateOct 12, 2025
Intel Sourceransomware.live
StatusDUPLICATE CLAIM

Threat Group

radiant
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.