Iran-linked ransomware gang targeted US healthcare org amid military conflict

2026-03-24T14:51:58Z2e7cd447322c7e24314aa3cdd72180569062c8730e4e0f6563d246621550f7d0
CrunchyrollDeFiDutch Ministry of FinanceIran-linkedPay2KeyResolvYanluowangcrypto-theftcryptocurrencydata-breachdata-exfiltration(negative)exploitfinancial-lossgovernmenthealthcarelaw-enforcementransomwaresentencingthird-party-vendor

What happened

Multiple separate incidents: An Iran-linked ransomware group (reported as Pay2Key) targeted a U.S. healthcare organization during ongoing military conflict; responders reported no evidence of data exfiltration, which is atypical for Pay2Key. The Dutch Ministry of Finance is investigating a cyber intrusion that impacted internal systems. Anime streamer Crunchyroll confirmed customer information was stolen via a third‑party customer service vendor and leaked online. A Russian national who assisted the Yanluowang ransomware gang received a nearly seven‑year prison sentence. DeFi platform Resolv58

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
therecord_media
Record identifier
2e7cd447322c7e24314aa3cdd72180569062c8730e4e0f6563d246621550f7d0
Enrichment time
2026-03-24T14:51:58Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Iran-linked ransomware gang targeted US healthcare org amid military conflict · Baitaphish