Ransomware victim disclosure
← All victimsR. Roese Contracting Company Inc.
listed as R Roese Contracting · Claimed by Akira · listed 2 months ago
Status timeline
- ListedApr 17, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Sector
- Construction
- Listed on leak site
- Apr 17, 2026
About the victim
AI dossier — public-source company profileR. Roese Contracting Company Inc. is a provider of underground and aerial construction services in the United States, specializing in telecommunications, water and sewer, electric, and gas transmission and distribution infrastructure. The company operates as a contractor in utility and infrastructure construction sectors.
- Industry
- Underground & Aerial Utility Construction (Telecommunications, Water, Sewer, Electric, Gas)
Attack summary
Severity: high — Confirmed exfiltration of 61 GB of data including regulated personal identifiers (passports constitute PII), financial records, NDAs, and client data; the breadth and sensitivity of the data types across multiple categories warrants a high severity rating, approaching critical given the inclusion of identity documents.The Akira ransomware group claims to have exfiltrated approximately 61 GB of corporate data from R. Roese Contracting Company Inc., including employee personal data (passports, contact information), financial records, client data, project files, and NDAs, with publication described as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee passports
- Employee phone numbers
- Employee email addresses
- Financial records
- Client data
- Project files
- NDAs
What the group claims
R. Roese Contracting Company Inc. is a leading provider of underg round and aerial construction services, specializing in telecommu nications, water and sewer, electric, and gas transmission and di stribution. We will upload 61gb of corporate data soon. Personal data of empl oyees (passports, phones, emails and so on), financials, client d ata, lots of project files, NDAs, etc.
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

