Redpacketsecurity Ransomware Attacks Target SFA Engineering and Nippon Steel Corporations
Article Content
- •SFA Engineering and Nippon Steel were listed as ransomware victims by MetaEncryptor.
- •No details on attack methods, ransom amounts, or data exfiltration were provided.
- •The claims remain unverified and should be treated as unconfirmed until further evidence is available.
On September 15, 2026, both SFA Engineering Corporation and Nippon Steel Corporation were listed as victims on a ransomware leak site operated by the MetaEncryptor group. SFA Engineering, a South Korean firm specializing in industrial automation, and Nippon Steel, a leading Japanese steel producer, were both named without specific details on the attack method or the extent of the damage. The listings did not provide information regarding system encryption, data theft, ransom amounts, or operational disruptions. No corroborating evidence or independent verification of the claims was provided, and the articles emphasize that the information should be treated as unconfirmed until further evidence is available. The lack of details raises questions about the actual impact of the incidents on the affected companies. Both articles highlight that RedPacket Security is not affiliated with the attackers and does not host any compromised data.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track MetaEncryptor and Nippon Steel Corporation in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Multiple Ransomware Attacks Target Various Companies on September 7, 2026 On September 7, 2026, multiple companies fell victim to ransomware attacks from various groups, including AURORA, THEGENTLEMEN, and DARK PROJECT. Notable victims include Jinny Beauty Supply, Zanini, and NFM Lending, with claims of extensive data breaches involving sensitive customer and corporate information. The…
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…