medusalockerRansomware VictimTransportation
Thecourierguy
Organization with 2018 emails extracted. Domain: thecourierguy.co.za
Incident Details
- Threat Group
- medusalocker
- Victim / Organization
- Thecourierguy
- Website / Domain
- thecourierguy.co.za
- Industry Sector
- Transportation
- Country / Region
- 🇿🇦 ZA
- Date Discovered
- Sunday, August 16, 2026
What This Listing Means
Posting on medusalocker's ransomware leak site typically signals that the threat actor claims to have:
- ▸Gained unauthorized access to the organization's network via phishing, exposed credentials, or an unpatched vulnerability
- ▸Exfiltrated sensitive data — potentially including financial records, PII, customer data, or trade secrets
- ▸Deployed ransomware to encrypt systems and disrupt operations
- ▸Issued a ransom demand with a deadline to publish all stolen data publicly if unpaid
Open Source Investigation
Is This Your Organization?
Security Arsenal provides 24/7 ransomware incident response. We contain active attacks, support ransom negotiation decisions, perform forensic analysis, and recover your data.
Get Emergency ResponseIR Services OverviewProtect Your Organization
- AlertMonitor
Dark web & ransomware monitoring for your domains
- Managed SOC & MDR
24/7 threat detection and response
- Penetration Testing
Find ransomware entry points before attackers do