Asahi Group Holdings hit by ransomware attack
Incident
Summary
Hide ▲
Show ▼
Asahi Group Holdings confirmed a September 2025 ransomware attack that disrupted automated order and shipping processes and exposed two million people’s personal data. The intrusion hit the brewer’s main systems, encrypted live servers, and infected employee devices, making the operational damage immediate. Recovery effects were still expected to run through February 2026, showing the disruption was not short-lived. The company is also moving toward a stricter zero-trust security model after the compromise.
Related Happenings
Washington Hotel brand in Japan / Fujita Kanko hit by ransomware attack
Incident
First: 16.02.2026 23:10
Last: 16.02.2026 23:10
Sources 1
About this happening:
The **Washington Hotel** brand in **Japan** disclosed a **ransomware attack** that compromised its servers and exposed **various business data**. The incident matters because some...
Washington Hotel brand in Japan / Fujita Kanko hit by ransomware attack
IncidentAbout this happening: The **Washington Hotel** brand in **Japan** disclosed a **ransomware attack** that compromised its servers and exposed **various business data**. The incident matters because some...
Qilin, Akira and Sinobi late-2025 ransomware wave
Campaign
First: 29.01.2026 15:01
Last: 29.01.2026 15:01
Sources 1
About this happening:
A **late-2025 ransomware wave** led by **Qilin**, **Akira** and **Sinobi** increased pressure on **organizations** as operators prioritized **fast access and execution** to evade...
Qilin, Akira and Sinobi late-2025 ransomware wave
CampaignAbout this happening: A **late-2025 ransomware wave** led by **Qilin**, **Akira** and **Sinobi** increased pressure on **organizations** as operators prioritized **fast access and execution** to evade...
Qilin Korean Leaks campaign targeting South Korean financial-sector organizations
Campaign
First: 26.11.2025 16:31
Last: 26.11.2025 16:31
Sources 1
About this happening:
**Qilin** ran **Korean Leaks**, a **multi-wave** extortion campaign that hit **South Korean financial organizations** across **September-October 2025**. The operation spread throu...
Qilin Korean Leaks campaign targeting South Korean financial-sector organizations
CampaignAbout this happening: **Qilin** ran **Korean Leaks**, a **multi-wave** extortion campaign that hit **South Korean financial organizations** across **September-October 2025**. The operation spread throu...
Qilin ransomware leak-site surge and double-extortion activity in H2 2025
Malware Activity
First: 27.10.2025 18:45
Last: 27.10.2025 18:45
Sources 1
About this happening:
The **Qilin ransomware** operation sustained a **leak-site surge** in **second half of 2025**, publishing **more than 40 victim listings per month** and keeping pressure on victim...
Qilin ransomware leak-site surge and double-extortion activity in H2 2025
Malware ActivityAbout this happening: The **Qilin ransomware** operation sustained a **leak-site surge** in **second half of 2025**, publishing **more than 40 victim listings per month** and keeping pressure on victim...
Qilin ransomware-as-a-service affiliate campaign targeting five countries
Campaign
First: 27.10.2025 18:45
Last: 27.10.2025 18:45
Sources 1
About this happening:
Qilin **ransomware-as-a-service** affiliates sustained a **multi-country campaign** through **2H 2025**, keeping leak-site pressure high and showing repeatable extortion activity....
Qilin ransomware-as-a-service affiliate campaign targeting five countries
CampaignAbout this happening: Qilin **ransomware-as-a-service** affiliates sustained a **multi-country campaign** through **2H 2025**, keeping leak-site pressure high and showing repeatable extortion activity....
Timeline
-
15.12.2025 13:15 1 articles · 5mo ago
Qilin ransomware intrusion against Asahi Group Holdings
Exploitation ObservedQilin claimed a ransomware intrusion against Asahi Group Holdings on September 29, 2025 that hit the brewer’s main systems, encrypted live servers, infected employee devices on the network, and disrupted key business operations in Japan, including automated order and shipping processes.
Show sources
- Asahi to Launch Cybersecurity Overhaul After Crippling Cyber-Attack — www.infosecurity-magazine.com — 15.12.2025 13:15
-
15.12.2025 13:15 2 articles · 5mo ago
Asahi Group Holdings overhauls cybersecurity posture
Mitigation Patch UpdateOn December 15, 2025, Asahi Group Holdings said it is elevating cybersecurity to a top management priority, considering a dedicated cybersecurity unit, scrapping VPNs, and moving to a stricter zero-trust model as recovery efforts continue toward February 2026. The company also reported a 20% year-on-year drop in alcohol sales in Japan in November 2025 and said it has skipped monthly sales disclosures for three consecutive months because of the system disruption.
Show sources
- Asahi to Launch Cybersecurity Overhaul After Crippling Cyber-Attack — www.infosecurity-magazine.com — 15.12.2025 13:15
- Asahi to Launch Cybersecurity Overhaul After Crippling Cyber-Attack — www.infosecurity-magazine.com — 15.12.2025 13:15