Iran-linked ransomware gang targeted US healthcare org amid military conflict
2026-03-24T14:51:58Z•2e7cd447322c7e24314aa3cdd72180569062c8730e4e0f6563d246621550f7d0
CrunchyrollDeFiDutch Ministry of FinanceIran-linkedPay2KeyResolvYanluowangcrypto-theftcryptocurrencydata-breachdata-exfiltration(negative)exploitfinancial-lossgovernmenthealthcarelaw-enforcementransomwaresentencingthird-party-vendor
What happened
Multiple separate incidents: An Iran-linked ransomware group (reported as Pay2Key) targeted a U.S. healthcare organization during ongoing military conflict; responders reported no evidence of data exfiltration, which is atypical for Pay2Key. The Dutch Ministry of Finance is investigating a cyber intrusion that impacted internal systems. Anime streamer Crunchyroll confirmed customer information was stolen via a third‑party customer service vendor and leaked online. A Russian national who assisted the Yanluowang ransomware gang received a nearly seven‑year prison sentence. DeFi platform Resolv58
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- therecord_media
- Record identifier
- 2e7cd447322c7e24314aa3cdd72180569062c8730e4e0f6563d246621550f7d0
- Enrichment time
- 2026-03-24T14:51:58Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.