market · May 15, 2026
RansomHouse Ransomware Group Claims Breach of Trellix Source Code Repository
Share the canonical public link.
RansomHouse ransomware group accessed Trellix's source code repository on April 17, 2026. Attackers published screenshots on their dark web leak site showing internal infrastructure including VMware, Rubrik, and Dell EMC dashboards. Trellix confirmed unauthorized access but reported no evidence of source code exploitation or pipeline tampering. The company engaged forensic experts and notified law enforcement on May 12, 2026. RansomHouse, active since 2022, targeted Trellix's merged FireEye and McAfee Enterprise operations.