GLOBALMalwareGovernmentGovernmentRansomwareQilinRansom DemandedActor NamedMedium
TWU Local 100
bd_cffcb48ce7af01f3 · schema v1 · pii pii-v1
Full breach record for TWU Local 100 →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Qilin on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Group activity: Public SectorDiscovered: 2026-02-23
Source: Ransomware.live
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Ransomware claims (1)
- bd_4cde0d138cbb2a22Leak Siteqilinfiled 2026-02-03(21d gap)Verified by operator
Regulatory filings (4) · sorted by filing gap
- bd_02a456927aea0129Indiana State AGfiled 2026-04-24(59d gap)Verified by operator
- bd_36f2deae02d39a28Indiana State AGfiled 2026-04-24(59d gap)Verified
- bd_972f7a479631d755Vermont State AGfiled 2026-04-24(59d gap)Verified
- bd_c859070a609e7efbNew Hampshire State AGfiled 2026-04-24(59d gap)Verified
Source provenance
- Source URL
- https://www.ransomware.live/
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 23, 2026
- Raw hash
- 83a755bbcc694e59d3247152fd9a374d5f68538fcee990129a33a0bb5d41e95d
Reporting entity
- Name
- qilin
Victim entity
- Name
- TWU Local 100norm: twu local 100
- Domain
- twulocal100.org
- Industry
- Governmentllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· qilin
- Threat actor
- QilinExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.