[QILIN] – Ransomware Victim: Disseny Dental

image

NOTE: No files or stolen information are exfiltrated, downloaded, taken, hosted, seen, reposted, or disclosed by RedPacket Security. Any legal issues relating to the content should be directed at the attackers, not RedPacket Security. This blog is an editorial notice informing that a company has fallen victim to a ransomware attack. RedPacket Security is not affiliated with any ransomware threat actors or groups and will not host infringing content. The information on this page is automated and redacted whilst being scraped directly from the QILIN Onion Dark Web Tor Blog page.

Ransomware group:
QILIN
Victim name:
DISSENY DENTAL

AI Generated Summary of the Ransomware Leak Page

On October 30, 2025, a leak page associated with the ransomware group qilin identifies Disseny Dental as a victim. Disseny Dental is described as a Spain-based healthcare provider. The post date matches the leak entry’s publication date, and the excerpt does not explicitly state whether the attackers encrypted the victim’s systems or simply exfiltrated data; no ransom amount is disclosed in the available text. A ransom-related resource is present on the page in the form of a claim URL, consistent with standard double-extortion tactics where attackers threaten to release stolen data or offer download access. The post’s metadata confirms the victim’s industry as healthcare and its location as Spain. A line labeled TOX appears with a long alphanumeric string, likely functioning as an internal token or hash associated with the post.

Evidence on the page includes three images, described only in general terms as screenshots of internal documents or data. These images are presented to corroborate the breach claim, though the exact content is not shown in the excerpt. The images are hosted on an onion-domain network, and the page defangs such URLs rather than exposing them directly. In addition, the post does not disclose additional external links or filings beyond the claim URL; no explicit encryption detail or ransom figure is provided in the excerpt. Taken together, this entry signals a healthcare-sector victim in Spain and reinforces the ongoing risk ransomware poses to medical service providers, even when explicit encryption details and financial demands are not disclosed in the leak excerpt.

Support Our Work

A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on Patreon or Buy Me A Coffee using the buttons below.

AI APIs OSINT driven New features