< Back to all clusters
[TECHNOLOGY] · Italy · 2 sources

started · updated

Qilin ransomware group targets multiple Italian companies

The ransomware group known as Qilin has significantly expanded its operations in Italy, listing multiple companies on its leak site within a matter of hours. The targeted entities span various sectors, including manufacturing, agriculture, and services.

On August 23, 2026, the group listed TECNICI ASSOCIATI STP and EUROFLORA SRL almost simultaneously, with technical records showing the entries were posted just two seconds apart. EUROFLORA SRL, which operates in the agriculture and food production sector, detected a breach on the afternoon of the same day. Additionally, the manufacturing firm S. E. M. P. s. r. l. experienced an intrusion that was discovered shortly after it occurred.

The wave of attacks continued into August 24, 2026, when Qilin claimed to have attacked Aurore Development S. p. A. using malware to encrypt corporate data. While the group has claimed responsibility for these incidents, official confirmation regarding the specific methods of access and the extent of data theft for some of these companies is still pending.

Entities

Qilin

Sources

about 1 month ago