Ransomware Victim: Allan Brothers Fruit (aurora)

Fecha
16 Jun 2026
Actor
aurora
Tipo
Ransomware
Pais
United States
Sector
Software
Confianza
high
60
Prioridad analitica
Media

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

0IOCs
0TTPs
auroraActor
United StatesPais
Executive Summary
Victima de ransomware reportada en el dashboard de aurora.

Key Points

  • Ransomware Dashboard
  • Fuente original

Allan Brothers Fruit

Victima de ransomware reportada en el dashboard de aurora.

CampoValor
Grupoaurora
PaisUS
SectorAgriculture and Food Production
Fecha2026-06-16T13:22:03.166497+00:00

Detalles

[food] Allan Brothers, Inc. β€” a third-generation, family-owned tree-fruit operation headquartered in Naches, Washington. Allan Brothers packs and ships apples and cherries from a 300,000 sq ft cold-storage facility, employing roughly 45 full-time staff and up to 2,000 seasonal workers during peak harvest. Eight server volumes: 14,228 employee records from ADP Workforce Now β€” names, dates of birth, phone numbers, gender, employment history, photos β€” covering every person who has ever worked at Allan Brothers, including seasonal cherry pickers, H-2A visa workers, and office staff. W-2 tax filings with full Social Security Numbers for employees across eight legal entities (ALLAN, ABMEXICO, ABSAGE, ABSAGEMOOR, ABVINEYARD, ABAG, ABSHELTON, ABFROST). Direct deposit forms with bank routing numbers and account numbers for named individuals β€” the raw ingredients for ACH fraud. H-2A visa worker tracking spreadsheets listing which workers have or are missing Social Security Numbers, plus I-9 employment eligibility audits β€” exposing immigration status for the most vulnerable members of the workforce. A complete Oracle RMAN database backup of the Famous Software production system β€” the company's grower settlement, customer pricing, and lot-tracking engine. 1.3 GB of employee badge photos β€” facial images linked to names and employee IDs for hundreds of workers. COBOL-era accounting databases spanning 8 legal entities β€” GL, AP, AR, payroll, and W-2 filing data going back years. OSHA incident logs naming workers who sustained injuries, with injury descriptions and treatment details.

Referencias

Diamond Model

Adversary
aurora
Ver perfil →
Victim
Ransomware Victim: Allan Brothers Fruit (aurora)
United States
Capability
Ransomware
Filtracion: 1.3 GB
Infrastructure
Sin infraestructura confirmada

Referencias y enlaces

→ Perfil del actor aurora en el blog → Ver aurora en IntelTracker → URL IntelTracker: u6lieui2dakbctcjea2bz4r4q32r7t36nwljovqbv7mxs6o2smgxixid.onion → Fuente OSINT: u6lieui2dakbctcjea2bz4r4q32r7t36nwljovqbv7mxs6o2smgxixid.onion → Buscar aurora en APTTrail → Repositorio APTTrail → Mas incidentes en United States → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes