RANSOMWARE VICTIMCONSUMER SERVICES

INGKA GROUP

lapsus$📍 Sweden (SE)📅 June 13, 2026
8
same group

Attack Intelligence

INGKA GROUP was compromised in a ransomware attack attributed to lapsus$ in June 2026. The organization, operating in the Consumer Services sector in Sweden, was added to the group's data leak site as part of an extortion campaign.

lapsus$ operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

Full mapping of global e-commerce architecture and internal coworker platforms. Supply chain logistics, cloud infrastructure, and AI/MLOps repositories

Additional Details

Other Victims — lapsus$ (8)

Quick Facts

CountrySweden (SE)
SectorConsumer Services
Attack DateJun 13, 2026
Intel Sourceransomware.live

Threat Group

lapsus$
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.