Ransomware victim disclosure
← All victimsStiftung Autismuslink
listed as autismuslink.ch · Claimed by Incransom · listed 6 days ago
Status timeline
- ListedJul 24, 2026
- Data leakeddate unknown
At a glance
- Group
- Incransom
- Status
- Data leaked
- Country
- Switzerland
- Sector
- Healthcare
- Listed on leak site
- Jul 24, 2026
About the victim
AI dossier — public-source company profileStiftung Autismuslink is a Swiss foundation headquartered in Bern that provides specialized support services for adolescents and young adults with Autism Spectrum Disorder. The organization offers educational programs, vocational training, integration measures, and coaching to help individuals with autism achieve social and professional integration.
- Industry
- Healthcare & Social Services - Autism Spectrum Disorder Support
- Address
- Bern, Switzerland
Attack summary
Severity: high — The target is a healthcare and social services organization handling sensitive personal data for vulnerable populations (minors and young adults with autism). Even without explicit confirmation of data exfiltration or proof files, compromise of a healthcare organization's IT infrastructure poses significant risk to regulated personal and medical information.The incransom group claims to have conducted an attack on Stiftung Autismuslink's IT infrastructure. The post does not explicitly state whether data was exfiltrated, encrypted, or both, though the victim's public site references 'an incident in our IT infrastructure.'
Data the group says was taken
AI dossier — extracted from the leak post- Patient/client records
- Personal identification information
- Medical/diagnostic information
- Employment and vocational data
What the group claims
The Stiftung Autismuslink (Autism Link Foundation), a Switzerland-based competence center dedicated to supporting adolescents and young adults with Autism Spectrum Disorder (ASD). Headquartered in Bern, the organization focuses on helping individuals with autism achieve social and professional integration.
Sources
Source
Indexed 6 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

