Ransomware victim disclosure
← All victimsSpacecom
listed as List of Spacecom employees · Claimed by Handala · listed 10 months ago
Status timeline
- ListedSep 28, 2025
- Data leakeddate unknown
At a glance
- Group
- Handala
- Status
- Data leaked
- Country
- Israel
- Sector
- Technology
- Listed on leak site
- Sep 28, 2025
About the victim
AI dossier — public-source company profileSpacecom is an Israeli satellite communications company that operates and manages satellites in orbit. The company provides satellite services and connectivity solutions, and based on the leak post context, maintains a workforce involved in satellite operations. No further details are available from the public site excerpt provided.
- Industry
- Satellite Communications
Attack summary
Severity: medium — The disclosed data appears to be an employee contact/directory list, which constitutes PII exfiltration but is limited in scope to personnel data rather than large-scale regulated data such as financial or medical records. The data is published, confirming exfiltration, but the described inventory is relatively narrow.The Handala group claims to have exfiltrated a list of Spacecom employee contact information and published it, offering a downloadable employee directory without any stated ransom demand.
Data the group says was taken
AI dossier — extracted from the leak post- Employee contact list
- Employee names
- Employee contact details
What the group claims
Despite Spacecom’s legendary talent for saying “No comment” faster than a rocket launch, you can now skip the press releases and go straight to the source. Grab the contact list and ask the employees themselves, because nothing beats hearing the real story from the people who actually keep the satellites in orbit. Download Spacecom employees…
Sources
Source
Indexed 10 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

