# Deadlock ransomware claims Global Terminal Services

Published: 2026-08-19 · Severity: elevated · Sectors: transportation
Canonical: https://vorant.io/reports/060a10dd-3126-5450-a835-53102298196f/deadlock-ransomware-claims-global-terminal-services

> The Deadlock ransomware group added Global Terminal Services to its leak site as a claimed victim.

Ransomware.live tracking identified Global Terminal Services as a newly listed victim on the Deadlock ransomware group's extortion site. The listing itself provides minimal technical detail—no confirmed initial access vector, exfiltrated data samples, or ransom demand figures are disclosed in the source material, which is limited to a bare victim entry and standard DNS record lookup.

Given the terminology "Terminal Services" in the victim name, the target likely operates in logistics, shipping, or port/transportation infrastructure, though this cannot be confirmed from the available data. As with most leak-site postings, this represents an unverified claim by the threat actor pending independent confirmation; no technical indicators of compromise or exploitation details were provided in this report.

## Mentioned in this report

- Threat actors: Deadlock
- Malware: Deadlock

Source reporting: https://www.ransomware.live/id/R2xvYmFsIFRlcm1pbmFsIFNlcnZpY2VzQERlYWRsb2Nr

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/060a10dd-3126-5450-a835-53102298196f/deadlock-ransomware-claims-global-terminal-services.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
