Ransomware victim disclosure
← All victimsNobema S.r.l.
listed as Nobema · Claimed by Thegentlemen · listed 1 day ago
Status timeline
- ListedAug 7, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- Germany
- Sector
- Technology
- Listed on leak site
- Aug 7, 2026
About the victim
AI dossier — public-source company profileNobema S.r.l. is an Italian family-run manufacturing company based near Turin specializing in plastic injection molding and integrated industrial services since 1986. They provide custom mold design, pre-series sampling, gas injection technology, and mass production of technical and aesthetic plastic components, serving diverse industrial sectors and producing niche consumer products including drumsticks.
- Industry
- Plastic Molding & Industrial Manufacturing
- Address
- Via Alpignano, 56 - 10040 San Gillio (TO), Italy
- Founded
- 1986
Attack summary
Severity: low — No proof files or screenshots are advertised; no data inventory or operational impact is detailed in the leak post. The disclosure is an announcement only without substantiating evidence or clear claim of data exfiltration.The ransomware group claims to have compromised Nobema's systems. The leak post does not specify what data was exfiltrated or whether encryption occurred, nor does it state what sensitive information is at stake.
What the group claims
nobema.com zoominfo.com/c/nobema-srl/371446900 Nobema S.r.l. is an Italian family-run manufacturing company based near Turin, specializing in plastic molding and integrated industrial services since 1986. They provide end-to-end solutions ranging from custom mold design and pre-series sampling to advanced gas injection technology and mass production. The company serves diverse sectors with high-quality plastic components, uniquely combining industrial parts with niche consumer products like drumsticks
Sources
- Victim sitenobema.com
Source
Indexed 1 day agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

