Threat actors called VANIR Ransomware Group posted a few listings in July. Tonight, their onion site has a seized message:
" THIS HIDDEN SITE HAS BEEN SEIZED
by the State Bureau of Investigation Baden-Württemberg as a part of a law enforcement action taken against Vanir Ransomware Group "
From the press release about the seizure, it sounds like there have been no arrests and the identity of the TAs is not yet known: https://www.presseportal.de/blaulicht/pm/110980/5866617
For more on what Vanir's leak site looked like previously, see Cyjax: https://www.cyjax.com/data-leak-site-emergence-continues-to-increase/