Incident analysis
conseguros was listed by Qilin ransomware, a group with 2,388 victims recorded in this database. The listing appeared on the group's leak site on February 14, 2024.
conseguros is based in Timor-Leste and operates in the Financial Services sector. Timor-Leste ranks #120 worldwide for ransomware disclosures, with 4 victims in this database.
Sector context. Financial sector organisations are targeted for their access to funds, sensitive financial data, and the reputational damage a public breach can cause. Regulatory requirements also increase recovery costs.
Qilin typically follows a double extortion model: data is exfiltrated from the victim's systems before files are encrypted, so the victim faces two demands at once — pay to restore access, and pay to keep stolen data unpublished. The leak site, where this listing appeared, is the lever for the second demand.