Ransomware victim disclosure
← All victimsENB Versicherungen
listed as ENB Versicherungen | myenb.ch · Claimed by Payload · listed 5 hours ago
Status timeline
- ListedJun 20, 2026
- Data leakeddate unknown
At a glance
- Group
- Payload
- Status
- Data leaked
- Country
- Switzerland
- Sector
- Financial Services
- Listed on leak site
- Jun 20, 2026
About the victim
AI dossier — public-source company profileENB AG is an independent insurance broker in Switzerland that provides tailored insurance solutions to private and corporate clients. The company offers health insurance, vehicle insurance, liability insurance, and employee benefits including professional pension plans and collective accident insurance.
- Industry
- Insurance Brokerage
Attack summary
Severity: medium — Confirmed data exfiltration from a financial services company (insurance broker) handling sensitive client and employee information; no proof files quantified in available excerpt, and no regulated data types explicitly confirmed, placing this at medium rather than high.The Payload group claims to have compromised ENB Versicherungen and exfiltrated data. Specific details about the scope of exfiltration or operational impact are not detailed in the available post excerpt.
Data the group says was taken
AI dossier — extracted from the leak post- Client insurance records
- Employee information
- Corporate client data
What the group claims
enb AG is an independent insurance broker that collaborates with leading insurance companies to provide tailored insurance solutions. They assist both private and corporate clients in navigating the complexities of insurance products, offering services such as health insurance, vehicle insurance, and liability insurance. The company emphasizes the importance of employee satisfaction and offers professional pension plans and collective accident insurance for businesses.
Sources
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

