RANSOMWARE VICTIMMANUFACTURING

Sicol

sicol.com.br
spacebears📍 Brazil (BR)📅 June 2, 2026
8
same group

Attack Intelligence

Sicol was compromised in a ransomware attack attributed to spacebears in June 2026. The organization, operating in the Manufacturing sector in Brazil, was added to the group's data leak site as part of an extortion campaign.

spacebears operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

SICOL – JS Cobranças e Serviços is a Brazilian company specializing in debt collection, credit management, and sales services. They blend digital automation with humanized customer support to help businesses recover debts and optimize their sales workflows.-Personal information of employees and clients -Financial documents -Other files https://***.com.br/

Other Victims — spacebears (8)

Quick Facts

CountryBrazil (BR)
SectorManufacturing
Attack DateJun 2, 2026
Domainsicol.com.br
Intel Sourceransomware.live

Threat Group

spacebears
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.