Ransomware victim disclosure
← All victimsDelano Public Schools
listed as delano.k12.mn.us · Claimed by Lockbit5 · listed 2 days ago
Status timeline
- ListedJun 11, 2026
- Data leakeddate unknown
At a glance
- Group
- Lockbit5
- Status
- Data leaked
- Country
- United States
- Sector
- Education
- Listed on leak site
- Jun 11, 2026
About the victim
AI dossier — public-source company profileDelano Public Schools is a public K-12 school district serving the Delano, Minnesota community. The district operates multiple schools (elementary, intermediate, high school) and provides comprehensive academic, athletic, and community education programs. It serves a small town with emphasis on student-centered learning and educational excellence.
- Industry
- Primary & Secondary Education
- Address
- Delano, Minnesota, US
- Employees
- 101-500
Attack summary
Severity: low — No proof files, screenshots, or specific data samples published. Post contains only generic boilerplate from the school's public website with no confirmation of actual encryption or data exfiltration. Disclosure status is 'data_published' but no substantive evidence of compromise is evident.LockBit5 claims to have attacked Delano Public Schools. The leak post provides only a generic excerpt from the school's public mission statement with no specific details on data exfiltration, encryption activity, or proof of compromise.
Data the group says was taken
AI dossier — extracted from the leak post- student records
- family information
- employee records
- financial/payroll data
- assessment data
What the group claims
Delano Public Schools is dedicated to providing systemic growth toward educational excellence for ev...
Sources
Source
Indexed 2 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

