INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).
Dow Inc hit by Qilin Ransomware attack
| 2026-03-31 07:21 RANSOMWARE & EXTORTION DATA BREACH
Executive Summary
AI-generated
On March 31, 2026, Qilin Ransomware allegedly breached Dow Inc., a global chemical manufacturing giant headquartered in the United States. The company employs approximately 36,000 people worldwide and generates annual revenues of around $40 billion. Dow Inc. is listed on Qilin's Tor leak site as a victim, but no proof of the hack has been released yet. This incident marks one of many ransomware attacks carried out by Qilin Ransomware since its formation in 2022, which claims over 40 victims monthly and peaked at 100 in June 2025. The group uses double-extortion tactics, encrypting data while threatening to leak it via Tor-based portals, and has targeted multiple sectors worldwide, including healthcare, manufacturing, and finance through phishing and known vulnerabilities.
Technical Mitigations AI-generated
• Patch vulnerabilities in the Tor network to prevent exploitation by Qilin Ransomware.
• Monitor for indicators of a potential Qilin ransomware attack, such as unusual login activity or data encryption patterns.
• Implement double-extortion tactics countermeasures, including robust backup and incident response plans.
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
Target & Sectors
Incident Timeline
Tactical Metrics
Intelligence Sources
Security Affairs
2026-03-31