Ransomware victim disclosure
← All victimsPorsche Zentrum Fulda
Claimed by Akira · listed 3 months ago
Status timeline
- ListedMar 12, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- Germany
- Sector
- Consumer Services
- Listed on leak site
- Mar 12, 2026
- Data size
- 10 GB
About the victim
AI dossier — public-source company profilePorsche Zentrum Fulda is an authorized Porsche dealership located in Fulda, Germany. It sells new and used Porsche vehicles including models such as the Taycan, 911, and Macan, and provides complementary services including vehicle maintenance, financing options, and lifestyle accessories.
- Industry
- Automotive Dealership
- Address
- Fulda, Germany
Attack summary
Severity: high — The claimed data includes employee passports (regulated personal identity documents / PII) and client files alongside significant business records across 10 GB, constituting confirmed exfiltration of sensitive personal and corporate data. While scale is moderate for a single dealership, the presence of passport scans elevates severity toward high.Akira claims to have exfiltrated approximately 10 GB of corporate data from Porsche Zentrum Fulda, including employee passports and identity documents, contracts and agreements, project files, internal confidential files, and client records, with publication stated as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee passports
- Employee identity documents
- Project files
- Contracts and agreements
- Internal confidential files
- Client files
What the group claims
Porsche Zentrum Fulda is a dealership offering both new and used Porsche vehicles, including popular models like the Taycan, 911, and Macan. The company provides a range of services including veh icle maintenance, financing options, and lifestyle accessories. We will upload 10gb of corporate data soon. Employee passports an d other documents, projects, contracts and agreements, internal c onfidential files, client files and so on.
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

