LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

Recent Breaches › City of Noblesville Listed by interlock Ransomware Group

HIGH severityUnverified claimHow we verify

City of Noblesville Listed by interlock Ransomware Group: Ransomware Claim — What’s Alleged & What To Do

RBRecent Breaches Breach Intelligence·November 26, 2024
City of Noblesville Listed by interlock Ransomware Group

Reported November 26, 2024.

HIGH
Severity
November 26, 2024
Disclosed
ShareXLinkedInFacebookRedditWhatsAppTelegram

The City of Noblesville was listed by the interlock ransomware group on November 26, 2024, after internal files were exfiltrated in a ransomware attack affecting an undisclosed number of people. Anyone connected to the city should check for official notices and follow guidance on protecting their information.

Severity & verification
HIGH severityUnverified claim
Data types not itemised.
Published on a ransomware group’s leak site — an unverified extortion claim until the named organization or credible reporting corroborates it.
Check your exposure
See every leak and listing tied to your email. We can’t confirm any single incident against the sources we search, so we won’t pretend to. 15-second check, no card, no account. Details go to your inbox.

By running your scan you agree to the Terms and Conditions and the Privacy Policy, and to GalaxyWarden emailing you the results of this scan.

On November 26, 2024, the City of Noblesville, a municipal government entity based in Noblesville, Indiana, was listed by the ransomware group known as interlock. Public reporting indicates that internal files were exfiltrated in a ransomware attack. The number of people affected remains unknown, and independent confirmation of the full scope is limited.

This matters because local governments routinely handle sensitive records tied to residents, employees, and public safety operations. When such an organization appears on a ransomware leak site, the practical concern is whether personal or operational data has left the city’s control and what that could mean for those whose information may be involved.

What happened

According to available public details, the City of Noblesville was listed by the interlock ransomware group on or around November 26, 2024. The incident is described as involving the exfiltration of internal files during a ransomware attack. No further confirmed timeline, technical method of intrusion, or total volume of data has been publicly disclosed in the provided record.

The group’s listing presents a claim that a large SQL database was among the material obtained, along with confidential data of employees and confidential data of the Police and emergency services. These assertions come from the threat actor’s own statements and have not been independently verified in the facts at hand. The number of individuals potentially affected is listed as unknown.

Who is interlock?

Interlock is a ransomware group that has operated in the public domain by deploying encryption malware and, in many cases, stealing data before encryption in a double-extortion model. Groups of this type typically post victim names on dedicated leak sites, set deadlines, and threaten to publish or auction stolen material if a ransom is not paid. Public reporting on interlock has associated it with attacks on organizations across multiple sectors, using common ransomware tactics such as initial access via compromised credentials or vulnerabilities, followed by lateral movement and data staging for exfiltration.

In this instance, the only specific claim tied to the City of Noblesville is the group’s own listing and the accompanying description of the material it says it holds. No additional statements, ransom demands, or proof packages beyond that listing are detailed in the available facts. Listings of this kind should be treated as unverified claims until corroborated by the victim organization or independent investigation.

About City of Noblesville

The City of Noblesville is a municipal government in Indiana. Public background information places it in the government sector, with an employee range of 250 to 499 people and estimated revenue between 25 million and 50 million dollars. It is headquartered in Noblesville, Indiana. Like other cities of comparable size, it administers local services that typically include public works, finance, human resources, police, fire and emergency response, and various citizen-facing programs.

A breach involving a city government is consequential because these organizations sit at the intersection of resident records, employee personnel files, and public-safety systems. Even when the precise contents of a theft remain unconfirmed, the potential exposure of internal government data can affect both day-to-day operations and the privacy of people who interact with city services.

The information in question

The facts state that internal files were exfiltrated in a ransomware attack. The interlock listing further claims the material includes a large SQL database, confidential data of employees, and confidential data of the Police and emergency services. Exact file counts, database schemas, or confirmation that any specific records were published have not been disclosed in the available record.

Organizations of this type commonly hold employee personnel information, payroll and benefits data, internal correspondence, law-enforcement case or administrative files, emergency-services operational records, and various citizen or vendor databases. Whether any of those categories were actually taken, and in what volume, remains unconfirmed beyond the group’s claims and the general description of internal-file exfiltration. Readers should treat named data types as reported assertions rather than verified inventories.

The real-world impact

For individuals whose information may have been involved, the primary risks are identity-related misuse, targeted phishing that references real personal or employment details, and potential exposure of sensitive personal or professional data. Employee records can contain Social Security numbers, addresses, banking details for direct deposit, or medical-related benefits information. Police and emergency-services data, if present, could include operational or personal details that raise privacy and safety concerns for officers, staff, or members of the public named in those systems.

For the City of Noblesville itself, the incident can disrupt internal systems, require forensic investigation and remediation, and create ongoing costs related to notification, monitoring, and restoration of services. Public trust in local government data handling may also be affected. Because the number of people affected is unknown and the precise contents remain unconfirmed, the full scale of impact cannot yet be quantified from public facts alone.

If your data was in this claimed breach

If you are a current or former employee, contractor, resident, or anyone who has provided information to the City of Noblesville, treat the situation as a potential exposure until clearer official details emerge. Monitor financial accounts and credit reports for unexpected activity. Be cautious of unsolicited emails, calls, or messages that reference city business, employment, or public-safety matters, as attackers sometimes use stolen data for social-engineering follow-ups. Consider placing a fraud alert or credit freeze with the major credit bureaus if you believe sensitive identifiers may be involved. Keep records of any official notices you receive from the city.

You can also run a free exposure scan of your email address to check whether your information has already surfaced in known breach data sets. Official updates from the City of Noblesville, when released, will provide the most reliable guidance on notification, credit monitoring, or other remedies specific to this incident.

AICompiled with AI assistance from public sources and published under our editorial standards.

Editorial & sourcing policy
Recent Breaches is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data, and we do not hold the data claimed in leak-site listings. Incidents are compiled from publicly accessible sources and threat-intelligence platforms and are reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — write to support@galaxywarden.com or press@recentbreaches.com.
Check if you’re exposed →

How this breach connects

Company

Attributed to

Method

CompanyCity of Noblesville security record
87/100
DoxxScan™ · Low doxx risk
B 80Good record

1 reported incident on record.

See City of Noblesville’s full breach history →

More recent breaches

Boston Chinatown Neighborhood Center Listed by interlock Ransomware GroupDecember 9, 2024Wayne County Listed by interlock Ransomware GroupOctober 2, 2024Wayne County, Michigan Listed by interlock Ransomware GroupOctober 2, 2024Kent District Library Listed by interlock Ransomware GroupMay 11, 2026

Latest breaches

Read GalaxyWarden’s full analysis of the City of Noblesville Listed by interlock Ransomware Group →

Source: threat-actor leak-site listing

Publicly posted by interlock — unverified claim, pending independent verification

Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.

Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.

ShareXLinkedInFacebookRedditWhatsAppTelegram