Wireless Solutions (Morris.Domain) Listed by lynx Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
Wireless Solutions (Morris.Domain) was listed by the lynx Ransomware Group on December 15, 2024, after internal files were exfiltrated in a ransomware attack; the actual date of the intrusion has not been established. Individuals who may have had data held by the organisation are advised to review any communications from Wireless Solutions and consider protective steps such as monitoring accounts and changing passwords.
Wireless Solutions, a South Carolina-based distributor of Motorola Solutions two-way radios and related equipment also identified as Morris.Domain, was listed by the lynx ransomware group on or around December 15, 2024. Public reporting indicates that internal files were exfiltrated during a ransomware attack, though the number of people affected remains unknown and further specifics about the incident have not been disclosed.
The listing itself constitutes a claim by the group rather than independently verified confirmation of every detail. For an organization that supplies communications equipment to resellers and end users, any unauthorized access to internal material carries potential consequences for business operations and those whose information may appear in company records.
What happened
According to available public information, Wireless Solutions was listed by the lynx ransomware group with a reported date of December 15, 2024. The incident is described as a ransomware attack in which internal files were allegedly exfiltrated. No further details on the precise timing of the intrusion, the scale of the compromise, the initial access method, or the total volume of data taken have been made public. The number of individuals potentially affected is listed as unknown. The group's appearance of the victim on its leak site is treated here as an unverified claim pending additional confirmation from the organization or independent sources.
The group behind it: lynx
Lynx is a ransomware operation that became publicly active in 2024. Like many contemporary ransomware groups, it has followed a double-extortion model: encrypting systems while also stealing data and threatening to publish or sell the material if a ransom is not paid. The group maintains a leak site on which it posts victim names and, in some cases, samples of stolen files to pressure organizations. Public reporting on lynx has noted its use of common ransomware tactics such as phishing or exploitation of remote-access tools for initial entry, followed by lateral movement, data theft, and encryption. Specific claims made by lynx about any individual victim, including Wireless Solutions, should be regarded as assertions by the group rather than established fact unless corroborated.
About Wireless Solutions (Morris.Domain)
Wireless Solutions is a wholesale stocking distributor of Motorola Solutions two-way radios and accessories. Its product lines include portable radios, call boxes, commercial radios, repeaters, base stations, recreational radios, and body cameras. The company also provides sales and marketing support to its network of resellers. It is headquartered in Greer, South Carolina. Organizations of this type typically maintain records related to inventory, reseller and customer accounts, pricing, shipping, employee information, and internal operational documents. Because the firm sits in the supply chain for professional and public-safety communications equipment, a breach can affect not only the company itself but also the resellers and end users who rely on its products and support services.
What was likely exposed
Public reporting states that internal files were exfiltrated in the ransomware attack. Exact file names, categories, or volumes beyond that description have not been disclosed. Companies operating as wholesale distributors of specialized radio equipment commonly hold business correspondence, purchase orders, reseller contact lists, inventory databases, financial records, employee data, and technical documentation. Whether any of those categories were among the files taken in this case remains unconfirmed. No specific personal data types such as Social Security numbers, payment-card details, or medical information have been named in the available facts.
The real-world impact
For individuals whose information may appear in the exfiltrated internal files—employees, reseller contacts, or customers—the primary risks include targeted phishing, social-engineering attempts that reference legitimate business relationships, and potential identity-related misuse if personal identifiers were present. Because the precise contents remain unknown, the actual exposure for any given person cannot be quantified from public information alone. For Wireless Solutions the consequences can include operational disruption from ransomware encryption, costs associated with investigation and recovery, possible contractual or regulatory obligations to notify affected parties, and reputational effects among resellers and partners who depend on the company for communications equipment. The absence of a confirmed count of affected people means the full scope of individual impact is still unclear.
What to do if you're exposed
If you have a past or present relationship with Wireless Solutions—as an employee, reseller, customer, or vendor—monitor financial and email accounts for unusual activity and treat unexpected messages that reference the company with caution. Consider placing a fraud alert or credit freeze with the major credit bureaus if you believe sensitive personal data may have been involved. Change passwords on any accounts that reused credentials associated with the organization, and enable multi-factor authentication wherever available. Readers can also run a free exposure scan of their email address to check whether that address has already appeared in known breach data sets. Stay alert for official notifications from Wireless Solutions or law-enforcement sources rather than relying solely on claims posted by threat actors.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
Allied Tenesis Listed by lynx Ransomware Groupfirstlight.net Listed by lynx Ransomware GroupWDEF-TV Listed by lynx Ransomware GroupAngotti & Reilly Listed by dragonforce Ransomware GroupLatest breaches
Publicly posted by lynx — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.