In July 2025, Atlantis Submarines, a tourism and marine excursion company, fell victim to a cyberattack by the Qilin ransomware group. The attackers asserted they had successfully exfiltrated sensitive business data, which may include operational documents, financial records, and customer-related information. The breach was publicly listed on Qilin’s data leak site, though the exact scope of the compromised data remains unverified. Given the nature of the attack ransomware with potential exposure of customer and financial data the incident poses significant risks to the company’s operational integrity, financial stability, and customer trust. The involvement of a known ransomware group suggests the attackers may demand payment for data recovery or to prevent further leaks, escalating the threat to the organization’s continuity. The breach underscores vulnerabilities in the company’s cybersecurity defenses, particularly in safeguarding sensitive customer and financial information from sophisticated ransomware operations.
Source: https://www.redpacketsecurity.com/qilin-ransomware-victim-atlantissubmarines/
TPRM report: https://www.rankiteo.com/company/atlantis-submarines
"id": "atl252092125",
"linkid": "atlantis-submarines",
"type": "Ransomware",
"date": "5/2025",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization’s existence"
{'affected_entities': [{'industry': 'Tourism / Marine Excursions',
'name': 'Atlantis Submarines',
'type': 'Private Company'}],
'data_breach': {'data_exfiltration': 'Claimed by threat actor',
'personally_identifiable_information': 'Possible (if customer '
'data included PII)',
'sensitivity_of_data': 'High (business and customer data)',
'type_of_data_compromised': ['operational documents',
'financial records',
'customer-related information']},
'date_publicly_disclosed': '2025-07',
'description': 'In July 2025, Atlantis Submarines, a tourism and marine '
'excursion company, reportedly became a victim of the Qilin '
'ransomware group. The attackers claimed to have exfiltrated '
'sensitive business data, potentially including operational '
'documents, financial records, and customer-related '
'information. The breach was listed on Qilin’s leak site, '
'although the full extent of the data compromise remains '
'unverified.',
'impact': {'brand_reputation_impact': 'Potential (due to public disclosure on '
'leak site)',
'data_compromised': ['operational documents',
'financial records',
'customer-related information'],
'identity_theft_risk': 'Possible (if customer data was '
'exfiltrated)'},
'investigation_status': 'Ongoing (extent of compromise unverified)',
'motivation': 'Financial (likely ransom demand)',
'ransomware': {'data_exfiltration': 'Claimed', 'ransomware_strain': 'Qilin'},
'references': [{'source': 'Qilin ransomware group leak site'}],
'threat_actor': 'Qilin ransomware group',
'title': 'Ransomware Attack on Atlantis Submarines by Qilin Group',
'type': 'Ransomware Attack'}