logo

Netfilim Ransomware Hits W&T Offshore, Oil Giant

ID: 2221fea3-6473-5c7c-a046-bc8ae4ca1c6f

STIX ID: report--2221fea3-6473-5c7c-a046-bc8ae4ca1c6f

Feed Name: Cyble Blog

Threat Score
70/100

Date Published: 2025-05-09

Date Updated: 2026-07-16

...
...

Netfilim (Nefilim) ransomware operators claim to have stolen over 800 GB of data from W&T Offshore and released roughly 10 GB after ransom negotiations reportedly failed; leaked items include bank reconciliations, journal entries, risk analytics models, and long-term debt reports, and the leak was verified and reported by Cyble with snapshots of the posted directory and messages.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.