Daricon.com, an entity associated with the military in the US, Canada, and NATO, reportedly suffered a ransomware attack by the incransom group in February 2026. This incident was discovered on February 26, 2026, and was reported to have resulted in the theft of approximately 400 GB of data. The information was disclosed by public threat intelligence feeds.
The compromised data reportedly includes personal data, emails, phone numbers, passport addresses, contracts, confidential documents, signatures of NATO generals, photos, videos, and drawings. Correspondence with NATO and US Army employees, and documentation on oil companies, were also reportedly involved. The exact number of affected individuals has not been publicly confirmed, and it remains unclear if any SSN, medical, or financial data was exposed.
As of now, there are no identified state Attorney General filings, official breach notification letters, or company statements regarding this incident due to its recency. More details may emerge as investigations progress, and official notices may be delayed.