Incident analysis
Port of Tanjung Pelepas was listed by Direwolf ransomware, a group with 147 victims recorded in this database. The listing appeared on the group's leak site on September 11, 2026.
Port of Tanjung Pelepas is based in Malaysia and operates in the Transportation sector. Malaysia ranks #25 worldwide for ransomware disclosures, with 138 victims in this database.
Sector context. Organisations in this sector hold valuable data and operational systems that ransomware groups seek to exploit for financial gain through encryption and data exfiltration.
Direwolf typically follows a double extortion model: data is exfiltrated from the victim's systems before files are encrypted, so the victim faces two demands at once — pay to restore access, and pay to keep stolen data unpublished. The leak site, where this listing appeared, is the lever for the second demand.