[STORMOUS] – Ransomware Victim: rinaldi[.]com[.]br
![[STORMOUS] - Ransomware Victim: rinaldi[.]com[.]br 1 image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png)
Ransomware Group: STORMOUS
VICTIM NAME: rinaldi[.]com[.]br
NOTE: No files or stolen information are [exfiltrated/downloaded/taken/hosted/seen/reposted/disclosed] by RedPacket Security. Any legal issues relating to the content of the files should be directed at the attackers directly, not RedPacket Security. This blog is simply posting an editorial news post informing that a company has fallen victim to a ransomware attack. RedPacket Security is in no way affiliated or aligned with any ransomware threat actors or groups and will not host infringing content. The information on this page is fully automated and redacted whilst being scraped directly from the STORMOUS Onion Dark Web Tor Blog page.
AI Generated Summary of the Ransomware Leak Page
The ransomware leak involves the website of a Brazilian business operating within the distribution sector. The compromised data, which has been publicly disclosed, includes sensitive information such as employee and customer details, administrative login credentials, email addresses, phone numbers, and full names. The leak is substantial, encompassing approximately 1 gigabyte of data, and was discovered and published on June 6, 2025. The threat actor group responsible for this attack is identified as “stormous,” known for targeting organizations and leaking stolen data publicly to pressure victims into paying ransoms. The leak notably exposes personal and corporate data, potentially leading to further cybersecurity risks such as identity theft or fraud.
The leaked information also includes data related to third-party entities, with references to external domains and additional user accounts. Multiple infostealer tools, such as Raccoon and RedLine, appear to have been used to extract credentials and other data from the victim’s environment. Visual evidence of the leak includes a screenshot of internal documents or dashboards, indicating the extent of access gained by the attackers. The leak’s public claim URL points to a dark web site, emphasizing the malicious and clandestine nature of this cyberattack. The attack occurred in early June 2025, highlighting an active trend of targeted data breaches affecting Brazilian firms in recent times.
A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.
If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below
To keep up to date follow us on the below channels.