Qilin Ransomware Group Claims Attack on French Industrial Giant LISI Group
On March 1, 2026, the ransomware group Qilin publicly attributed a cyberattack against LISI Group, a leading French industrial machinery and equipment manufacturer. The threat actors issued an extortion notice on their leak site, warning that sensitive data would be published unless the company initiated negotiations through provided channels.
LISI Group, headquartered in France, operates in the industrial sector, supplying critical components to aerospace, automotive, and other manufacturing industries. The attack highlights the persistent targeting of high-value industrial and enterprise organizations by ransomware operators. Qilin’s statement “The full leak will be published soon, unless a company representative contacts us via the channels provided” underscores the group’s intent to pressure victims into compliance.
No further details on the scope of exfiltrated data or the initial attack vector have been disclosed. The incident reflects broader trends in ransomware tactics, where double-extortion combining data theft with encryption remains a dominant strategy. The attack on LISI Group follows a pattern of ransomware groups prioritizing industrial and supply chain targets due to their operational criticality and potential for higher ransom payouts.
Source: https://www.dexpose.io/qilin-strikes-french-industrial-leader-lisi-group/
LISI GROUP cybersecurity rating report: https://www.rankiteo.com/company/lisi-group
"id": "LIS1772469645",
"linkid": "lisi-group",
"type": "Ransomware",
"date": "3/2026",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Industrial',
'location': 'France',
'name': 'LISI Group',
'type': 'Industrial machinery and equipment '
'manufacturer'}],
'data_breach': {'data_exfiltration': 'Yes',
'type_of_data_compromised': 'Sensitive data'},
'date_publicly_disclosed': '2026-03-01',
'description': 'On March 1, 2026, the ransomware group Qilin publicly '
'attributed a cyberattack against LISI Group, a leading French '
'industrial machinery and equipment manufacturer. The threat '
'actors issued an extortion notice on their leak site, warning '
'that sensitive data would be published unless the company '
'initiated negotiations through provided channels.',
'impact': {'data_compromised': 'Sensitive data'},
'motivation': 'Extortion',
'ransomware': {'data_exfiltration': 'Yes', 'ransomware_strain': 'Qilin'},
'references': [{'source': 'Qilin leak site'}],
'threat_actor': 'Qilin',
'title': 'Qilin Ransomware Attack on LISI Group',
'type': 'Ransomware'}