Ransomware

Qilin Reports an Attack on the Rio Supermarket

In December 2025, Rio Supermarket was the target of a ransomware attack by the Qilin threat group. The threat actor claimed responsibility for the attack on its leak site, although the full scope of the data breach and the material impact on the company’s operations have not yet been verified.

Overview

Missing evidence

Directly posted on the leak site or screenshots from Qilin’s dark web portal.Official statement or acknowledgment from Rio Supermarket.Confirmation of whether any data was actually leaked or whether any physical losses occurred.Live, accessible news reports detailing the impact of the attack.The original URL for DataInTheDark returned a 404 error during the review; Ransomware.live is now the most reliable active source for this claim.

Impact details

Public tracking of ransomware cases points to a claim by Qilin against the Rio supermarket. The public sources consulted do not confirm the encryption, service disruption, authenticity of the data, volume, or specific categories of data.

Unspecified sensitive data

Classification & severity

Category
Malicious code
Subtype
Ransomware
Confidence
Medium

Ransomware.live and a public repost support a post on the Qilin ransomware/leaks site related to the Rio supermarket. No official confirmation, evidence of a service disruption, or validation of the data has been found.

Severity assessment

Medium
Information impact
Suspected
Affected scope
Organization-wide
Critical service
None
Public confidence
Limited
Recoverability
Extended

The Qilin report supports a ransomware claim, but no public source confirms encryption, service disruption, or validated data leaks.

Data exfiltration· Claimed IntegrityAvailability

Timeline

Claim

Qilin listed Rio Supermarket as an alleged victim.

Evidence & sources

2 sources