Deadlock ransomware claims Global Terminal Services
The Deadlock ransomware group added Global Terminal Services to its leak site as a claimed victim.
Ransomware.live tracking identified Global Terminal Services as a newly listed victim on the Deadlock ransomware group's extortion site. The listing itself provides minimal technical detail—no confirmed initial access vector, exfiltrated data samples, or ransom demand figures are disclosed in the source material, which is limited to a bare victim entry and standard DNS record lookup.
Given the terminology "Terminal Services" in the victim name, the target likely operates in logistics, shipping, or port/transportation infrastructure, though this cannot be confirmed from the available data. As with most leak-site postings, this represents an unverified claim by the threat actor pending independent confirmation; no technical indicators of compromise or exploitation details were provided in this report.
Mentioned in this report
Source reporting: https://www.ransomware.live/id/R2xvYmFsIFRlcm1pbmFsIFNlcnZpY2VzQERlYWRsb2Nr
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free