Back to overview
Confidence MediumJun 23, 2026reynellaec.sa.edu.au

Reynella East College Data Dumped Online by Interlock Ransomware Group

PatternExternal actor · Malware · Availability impact

Reynella East College, an Australian school, had over 600 gigabytes of its data dumped online by the Interlock ransomware group on June 23, 2026. The threat actor claimed to have extracted over 473,000 files across more than 68,000 folders. The school had initially notified parents of a system-wide breach two weeks prior.

Signal date
Jun 23, 2026
Updated
Jun 26, 2026
Confidence
Medium
Sources
2 sources
reynellaec.sa.edu.au logo

Reynellaec

Sector
Educational Services
Signals
1 linked

Signal context

First seen: Jun 23, 2026

Last updated: Jun 26, 2026

Status: Public signal

Key points

  • Interlock ransomware group dumped over 600 gigabytes of school data online.
  • Over 473,000 files across more than 68,000 folders were extracted.
  • The school had notified parents of a breach on June 9, 2026.

Signal analysis

Beta

This analysis groups the signal by industry, likely incident action and impacted security area. It helps compare this signal with other published signals without treating the labels as final determinations.

Affected organization
Reynellaec logo
Reynellaec

Sector: Educational Services

Likely country: 🇦🇺 Australia

inferred from company domain

    Estimated
    Threat source
    Malware activity

    Watch ransomware, endpoint compromise and business interruption exposure.

    • Source type: outside the affected organization
    Business impact
    Potential operational disruption

    Impact area: Availability

    Trend context
    16 signals with similar action pattern
    • 4 signals in the same sector
    • 15 signals with the same likely impact area
    • 1 signal linked to this organization/domain
    Mentioned entities
    ReynellaecOnlineInterlock Ransomware Group Reynella EastCollegeAustralianInterlockOver

    External sources

    Related signals

    Grouped by why the signal is relevant.

    sandhillsmedical.org logoSandhillsmedicalJun 15, 2026
    Same action patternSame impact area

    INC Ransom group leaks Sandhills Medical Foundation patient data

    The INC Ransom ransomware group leaked stolen data belonging to Sandhills Medical Foundation patients on June 15, 2026. The breach, which originated from a ransomware attack discovered in May 2025, affected approximately 169,000 individuals, exposing sensitive personal and health information.

    mackaysugar.com.au logoMackaysugarJun 15, 2026
    Same action patternSame impact area

    Mackay Sugar hit by The Gentlemen ransomware, operations disrupted

    Australia's second-largest sugar producer, Mackay Sugar, was targeted in a ransomware attack by The Gentlemen group, disrupting operations at its mills. The ransomware group claimed responsibility and listed Mackay Sugar on its dark web leak site on June 15, 2026.

    naic.org logoNaicJun 11, 2026
    Same action patternSame impact area

    NAIC discloses data breach affecting PeopleSoft systems

    The National Association of Insurance Commissioners (NAIC) discovered unauthorized access to its PeopleSoft systems on or about June 11, 2026. The incident was identified as a ransomware attack, with the ShinyHunters threat actor group claiming responsibility and alleging the theft of 3.1 terabytes of data, including regulatory filings, statistical reports, insurer financial statements, and rating agency files. The NAIC promptly activated incident response procedures, engaged cybersecurity experts, and is coordinating with law enforcement.

    tataelectronics.com logoTataelectronicsJun 10, 2026
    Same action patternSame impact area

    Tata Electronics Cyberattack: Alleged Leak of Apple and Tesla Business Secrets by Worldleaks

    Tata Electronics, an Indian manufacturing subsidiary of the Tata Group, was identified as a victim on the Worldleaks ransomware leak site on June 10, 2026. Data related to Apple and Tesla, including alleged technical drawings for Apple's iPhone 17 and Tesla's Model 3 'Highland' project, reportedly appeared on cybercriminal channels on the same day. Tata Electronics acknowledged a recent 'cybersecurity incident' and is conducting an extensive analysis to assess the impact and verify the authenticity of the leaked documents.

    kodak.com logoKodakJun 1, 2026
    Same action patternSame impact area

    Kodak Hit by Ransomware Attack, ShinyHunters Claims 2.2 Million Records Stolen

    Kodak was listed among major cyberattacks on June 1, 2026, with reports indicating the company became a victim of a ransomware attack carried out by the ShinyHunters group. While Kodak officially confirmed the breach later in June, stating an unauthorized third party gained temporary access to a limited amount of company data, ShinyHunters claimed to have stolen over 2.2 million records containing customer personally identifiable information (PII) and internal corporate data.

    coe.int logoCoeJun 1, 2026
    Same action patternSame impact area

    Council of Europe Suffers Data Breach, ShinyHunters Claims Exfiltration of HR and Payroll Data

    The Council of Europe was reported to be a victim of a ransomware attack around June 1, 2026, with the ShinyHunters group claiming responsibility. The attackers allegedly exfiltrated 297 GB of data, including 429,000 files, comprising payslips, HR records, CVs, and financial information. Public reporting indicates a June 2026 intrusion, followed by phased disclosure and system hardening.