Data Breaches

Willis Lease Finance Corp Discloses Cyberattack

Aircraft parts dealer Willis Lease Finance Corporation (WLFC) notified the SEC that it fell victim to a cyberattack.

Aircraft parts dealer Willis Lease Finance Corporation (WLFC) notified the SEC that it fell victim to a cyberattack.

Aircraft parts dealer Willis Lease Finance Corporation (WLFC) has informed the US Securities and Exchange Commission that it fell victim to a cyberattack.

According to the SEC filing, the incident was flagged on January 31, when unauthorized activity was detected on portions of its systems.

“An investigation into the nature and scope of the incident was launched with the assistance of leading third-party cybersecurity experts and the company took steps to contain, assess and remediate the activity, including taking certain systems offline,” the company said in a Form 8-K filing.

According to WLFC, the incident was fully contained by February 2 and no unauthorized activity has since been detected. WLFC also noted that its investigation has yet to determine “what data has been exfiltrated or otherwise impacted” or “the complete nature, scope and impact” of the attack.

WLFC provides aircraft and engine services worldwide, lending aircraft, aircraft engines, and auxiliary power units to airlines, manufacturers, and maintenance, repair, and overhaul providers. The company says it is the first to lease jet engines to commercial operators.

While WLFC did not say what type of cyberattack it fell victim to, the Black Basta ransomware gang has claimed responsibility for the incident, adding the company to its Tor-based leak site.

Advertisement. Scroll to continue reading.

The cybergang claims to have exfiltrated over 900 GB of data from WLFC, including sensitive company data, employee and customer information, shared folders, confidential documents, and more, threatening to release it all publicly within six days.

Active since at least April 2022, Black Basta has been responsible for more than 300 infections to date with ransom demands estimated in the range of $100 million as of November 2023.

Related: Ransomware Attack Knocks 100 Romanian Hospitals Offline

Related: US Offers $10M Reward for Hive Ransomware Gang

Related: Ransomware Payments Surpassed $1 Billion in 2023

Related Content

Cybercrime

The individual was detained in May and has been extradited to Germany to face hacking charges.

Data Breaches

Hackers stole patient information from Clover Health Investments and AngMar Management Services in July.

Malware & Threats

The China-based hacking group has been exploiting SharePoint vulnerabilities since July 2025.

Cybercrime

Police took control of KillSec’s leak site and secured at least 110 terabytes of data stolen from victims.

Cybercrime

Karen Vardanyan has also been ordered to pay over $1.2 million in restitution to victims.

Cybercrime

Oleksii Oleksiyovych Lytvynenko has been sentenced to 4 years in prison after he was arrested in Ireland in 2023.

Data Breaches

The company has notified the SEC that hackers accessed patient, employee, provider, business, and financial information.

Data Breaches

FulcrumSec says it stole over 80 GB of data from Manchester Airports Group and plans to leak it online.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version