Židlochovice city Listed by Deadlock Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
Židlochovice city appears on a list published by the Deadlock Ransomware Group on July 10, 2026, indicating that internal files were exfiltrated during a ransomware attack. Affected individuals should check official city channels for updates and follow any instructions provided regarding their data.
What happened
The listing appeared on the Deadlock site on the reported date. The group stated that internal documents were exfiltrated and that personal data would be offered for sale on darknet forums. City officials, including Mayor Jan Vitula, publicly maintained that the intrusion was contained and that no data left the premises. Police were notified and countermeasures were implemented. No confirmed count of affected individuals or files has been released.
Inside Deadlock
Deadlock is a ransomware operation that typically gains access through common entry points such as remote-desktop services or phishing, then moves laterally to locate and copy data before deploying encryption. The group maintains a public leak site where it lists organisations it claims to have compromised, using the listings to pressure victims into paying. Its activity follows patterns seen with other ransomware actors that combine data theft with encryption demands.
About Židlochovice city
Židlochovice is a municipality in the South Moravian Region of the Czech Republic. Like other local-government bodies, it maintains databases containing resident registration details, tax records, social-services information and internal administrative correspondence. A successful intrusion at this level can affect both day-to-day municipal operations and the privacy of citizens whose records are held by the authority.
The information in question
The Deadlock listing refers to internal city administration documents and personal data from municipal databases. The city has stated that no data were removed. The precise contents therefore remain unconfirmed beyond the conflicting public statements.
What's at stake
Residents may face risks associated with the potential exposure of personal identifiers, contact details or administrative records. The municipality must manage the operational disruption, legal obligations and costs of the ongoing investigation. Until the police inquiry concludes, the actual scope of any data loss stays undetermined.
What to do if you're exposed
Monitor official statements from the city and Czech data-protection authorities for further updates. Residents can request a copy of their personal data held by the municipality under applicable privacy law. A short list of immediate practical steps follows.
- Change passwords for any accounts that used the same credentials as municipal services.
- Enable multi-factor authentication on email and financial accounts.
- Watch bank and official correspondence for unusual activity.
- Run a free exposure scan of your email address against known breach data to check for prior appearances.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
Muzeum Valassko Listed by Deadlock Ransomware GroupAldaco Avance 2022 S.L. Listed by Deadlock Ransomware GroupIFC Eur Listed by Deadlock Ransomware GroupNoega and Esnova Listed by Deadlock Ransomware GroupLatest breaches
Read GalaxyWarden’s full analysis of the Židlochovice city Listed by Deadlock Ransomware Group →
Publicly posted by deadlock — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.