Ransomware group

Tridentlocker ransomware: victims and leak site activity

The Tridentlocker ransomware group has listed 17 victims on its leak site since November 2025; its latest post is from 4 September 2026. Most affected countries: United States, United Kingdom and Canada. Most targeted sector: Technology.

Total posts 17
First seen 2025-11-29
Latest post 2026-09-04
Countries hit 7

About Tridentlocker

TridentLocker is a newly emerged ransomware group (surfaced mid-2025) targeting organizations managing high volumes of regulated or third-party data — including government services, telecom, and engineering firms — across the US, Canada, UK, and Asia using double-extortion tactics.

Leak site (Tor)
http://tridentfrdy6jydwywfx4vx422vnto7pktao2gyx2qdcwjanogq454ad.onion/articles

Tridentlocker victims per year

12 2025
5 2026

All 17 victims

Search every post in the full table.
Victim Country Sector Discovered
SouthernCarlson
RT Software United Kingdom Technology
Jameson Pepple Cantu PLLC United States Professional Services
TMPartner Japan Other
Eco Green Group United Kingdom Energy & Utilities
Sedgwick Government Solutions United States Government & Defense
allenprinting United States Professional Services
noment United States
bpost Belgium Technology
GuestTek Canada Technology
Advantage 360 United States Technology
iqs Iraq
LMG Holdings United States Manufacturing
EnQuest United Kingdom Energy & Utilities
Calmec Canada Manufacturing
typecaseinc United States Technology
asiawba South Korea Professional Services