# BlackNevas lists Zuni Shopping Center as victim

Published: 2026-07-22 · Severity: medium · Sectors: retail
Canonical: https://vorant.io/reports/9a5720ea-009a-5c24-abc6-3cf254f17d89/blacknevas-lists-zuni-shopping-center-as-victim

> Ransomware group BlackNevas claims to have breached Zuni Shopping Center Inc., a New Mexico retail and hospitality business on the Zuni Pueblo reservation.

Ransomware.live has indexed a listing from the BlackNevas ransomware group naming Zuni Shopping Center, Inc. as a victim. The company, incorporated in 1961 and dating back to 1910, operates Halona Plaza in the Zuni Pueblo reservation in New Mexico, including a grocery supermarket, a restaurant, and a bed & breakfast inn.

No technical details, IOCs, or exploited vulnerabilities were disclosed in this listing. The entry appears to be a claim posted to a leak site, consistent with typical double-extortion ransomware tactics where an actor lists a victim publicly to pressure payment before or without releasing stolen data. No confirmation of the intrusion vector or scope of data exfiltration is provided.

## Mentioned in this report

- Threat actors: blacknevas
- Malware: BlackNevas

Source reporting: https://www.ransomware.live/id/WnVuaSBTaG9wcGluZyBDZW50ZXIsIEluYy5AYmxhY2tuZXZhcw==

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/9a5720ea-009a-5c24-abc6-3cf254f17d89/blacknevas-lists-zuni-shopping-center-as-victim.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
