Redpacketsecurity Multiple Ransomware Attacks Reported on September 14, 2026
Article Content
- •Multiple organizations targeted by ransomware on September 14, 2026.
- •Insufficient details on the nature and impact of attacks from various groups.
- •Glasfloss.com reported a significant data theft of 402 GB.
On September 14, 2026, several organizations were reported as victims of ransomware attacks by various groups, including Insomnia, LockBit 5.0, and Chaos. Massey, Stotser & Nichols, a law firm in Alabama, was listed by Insomnia without details on the nature of the attack. LockBit 5.0 claimed httoy.fi, an accounting firm in Finland, as a victim, but provided no specifics on the attack's impact. Chaos identified glasfloss.com, a manufacturing company, claiming a data theft of approximately 402 GB of sensitive records. Other victims included Cerámicas Kantu, a Peruvian tile manufacturer, and multiple entities listed by LockBit 5.0, including a government organization in Italy and a technology firm in Taiwan. All reports indicate a lack of detailed information regarding ransom demands, specific data compromised, or operational impacts, leaving the full scope of these incidents unclear.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (7)
Following this threat?
Track Lockbit, Insomnia and Cerámicas Kantu in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
China-Linked QTFY Group Targets Critical Infrastructure with Advanced Exploits The Joint Cybersecurity Advisory JCSA-20260826-01, released on August 26, 2026, details ongoing activities by the China-linked hacking group QTFY, attributed to Nanjing Xinjiuwei Network Technology Co. Active since 2018, QTFY employs platforms like QScan and QTRouter to exploit vulnerabilities in critical…
PaperCut NG/MF Vulnerability Under Active Exploitation On August 27, 2026, PaperCut issued an urgent advisory regarding a zero-day vulnerability affecting its NG and MF print management software. This flaw allows unauthenticated attackers to execute arbitrary Java code remotely, compromising server configurations. Emergency patches have been released for versions 25 and…