Ransomware victim disclosure
← All victimsUniwersytet Warszawski
Claimed by interlock · listed 1 month ago
Status timeline
- Listed
Apr 15, 2026
- Data leaked
At a glance
About the victim
AI dossier — public-source company profileUniwersytet Warszawski (University of Warsaw) is one of Poland's largest and most prestigious public research universities, located in Warsaw. It offers over 300 study programmes across undergraduate, graduate, and doctoral levels, and is a member of the 4EU+ European university alliance. The university has tens of thousands of students and a substantial academic and administrative staff.
- Industry
- Higher Education
- Address
- Krakowskie Przedmieście 26/28, 00-927 Warsaw, Poland
- Employees
- 5001-10000
- Founded
- 1816
Attack summary
Severity: high — Confirmed exfiltration and publication of PII belonging to students and academic staff at a major public university, including personal records and academic work, constitutes significant sensitive data exposure at institutional scale.The Interlock ransomware group claims to have exfiltrated data from the Faculty of Management at the University of Warsaw, stating that data on students, instructors, and professors, as well as student projects and academic papers, was leaked. The disclosure status indicates data has been published.
Data the group says was taken
AI dossier — extracted from the leak post- Student personal data
- Instructor and professor data
- Student projects
- Academic papers and theses
What the group claims
The Faculty of Management at the University of Warsaw is a leading institution in the field of business education, offering a wide range of undergraduate and graduate programs that combine theory with practical experience. However, it is not known for its high level of security and data storage reliability, resulting in the leak of data on students, instructors, and leading professors, as well as student projects and papers.
Sources
Source
Indexed 1 month agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
