Ransomware victim disclosure
← All victimsOleoductos del Valle S.A.
listed as Oleoductos del Valle · Claimed by Incransom · listed 4 hours ago
Status timeline
- ListedAug 4, 2026
- Data leakeddate unknown
At a glance
- Group
- Incransom
- Status
- Data leaked
- Country
- Argentina
- Sector
- Energy & Utilities
- Listed on leak site
- Aug 4, 2026
About the victim
AI dossier — public-source company profileOleoductos del Valle (Oldelval) is an Argentine oil pipeline operator. The company operates crude oil and petroleum product pipelines and is subject to regulatory oversight by Argentine energy and financial authorities (SEN, CNV, BYMA, AFIP).
- Industry
- Oil & Gas Pipeline Transportation
Attack summary
Severity: critical — Confirmed exfiltration and publication of highly sensitive regulated data including employee PII at scale (payroll, health insurance, ID numbers), financial records of a critical infrastructure operator, environmental incident reports with operational implications, and internal compliance/whistleblower materials. The company is a regulated energy infrastructure provider, elevating the sensitivity.The incransom group claims to have exfiltrated a comprehensive dataset including HR records, financial statements, tax filings, regulatory documents, environmental incident reports, partner agreements, and personal data of company personnel. The group has published the data.
Data the group says was taken
AI dossier — extracted from the leak post- Payroll data and bank account details (CBU)
- Employee health insurance records
- Financial and regulatory reports (CNV, BYMA)
- Tax declarations (AFIP, Sicore, Ganancias, IVA)
- Tariff policy and SEN documents
- Environmental incident reports and pipeline technical assessments
- Confidentiality agreements with partners
- Internal whistleblower channel materials (Ley 27.401)
- Dividend and banking transaction records
- Personal data of directors and key employees (ID numbers, CVs)
What the group claims
During the analysis of data obtained from Oldelval, we have compiled information covering key aspects of the company's operations. The materials include: 1.HR documentation: full payroll data, bank account details (CBU), employee health insurance records (OSDE, SWISS MEDICAL), as well as severance calculations and compensation agreements. 2.Financial and regulatory reports filed with CNV and BYMA, including documents related to rating agencies (Moody's) and internal shareholder agreements. 3.Tax declarations and reports submitted to AFIP (Sicore, Ganancias, DDJJ IVA). 4.Documents related to tariff policy and SEN interactions, including WACC and TIR calculations used in tariff reviews. 5.Incident reports and environmental documentation, including reports on spills in Catriel and Medanito, as well as Rosen OSSR technical reports on pipeline conditions. 6.Confidentiality agreements with key partners, including Halliburton, Horizon, YPF, Otasa, McKinsey, and KPMG. 7.Internal whistleblower channel materials (Ley 27.401), including internal complaints and compliance reports. 8.Documents related to dividend payments and banking transactions. 9.Personal data of directors, candidates, and key employees, including ID numbers and CVs.
Sources
Source
Indexed 4 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

