[QILIN] – Ransomware Victim: Malgor
![[QILIN] - Ransomware Victim: Malgor 1 image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png)
NOTE: No files or stolen information are exfiltrated, downloaded, taken, hosted, seen, reposted, or disclosed by RedPacket Security. Any legal issues relating to the content should be directed at the attackers, not RedPacket Security. This blog is an editorial notice informing that a company has fallen victim to a ransomware attack. RedPacket Security is not affiliated with any ransomware threat actors or groups and will not host infringing content. The information on this page is automated and redacted whilst being scraped directly from the QILIN Onion Dark Web Tor Blog page.
AI Generated Summary of the Ransomware Leak Page
On 2025-10-24, a ransomware leak post attributed to the threat group qilin identified Malgor as a victim. The page presents Malgor & Co., Inc.—described in the description as a San Juan, Puerto Rico–based distributor founded in 1926 that supplies proprietary lines of food and related items—as a long-established target with a broad client base. The post characterizes the incident as a data-leak event, indicating that data exfiltration occurred and that stolen materials may be released or shared by the attackers. Because there is no explicit compromise date in the data, the post date is used as the event reference. The page also notes the existence of a claim URL and includes a gallery of visual materials, indicating that 14 images are present on the page as evidence or illustration.
The leak page contains an excerpt referencing a TOX key and an FTP drop point that includes login credentials. For safety, the credentials are redacted and the address is defanged in this summary; a sanitized reading would describe an FTP link to a remote host with redacted credentials (ftp://datashare:[REDACTED]@[64[.]176[.]162[.]76]). The metadata indicates 14 images accompany the post, likely screenshots or internal documents intended to corroborate the claim. No ransom amount is disclosed in the provided data, and the post does not supply additional industry details beyond the victim’s identity. Taken together, the page presents a data-leak notification associated with Malgor, issued by qilin, rather than a standalone encryption-only notice.
Support Our Work
A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.
If you like the site, please support us on Patreon or Buy Me A Coffee using the buttons below.
