Ailock is a newly tracked ransomware operation, first observed in late May 2026, with fourteen claimed victims to date and two posted in the last thirty days, indicating a modest but steady claim cadence rather than a surge. The victim sample skews toward Japanese firms (DAISEN, Yaomasa, Nihon Kotsu, Solid Advance) alongside European names such as Ferrovial, Pinturas Prisa, and Studio Sardano, suggesting the group is claiming targets across transport, construction, and manufacturing without settling into a single sector or region. No MITRE ATT&CK technique set is currently catalogued for this actor, and no group self-description is on file, so its stated motives and tooling remain unverified. Claims from this group should be treated as unconfirmed assertions of compromise pending independent corroboration; nothing about capability, access method, or extortion tactics can currently be substantiated beyond the fact of the postings themselves.