Ransomware victim disclosure
← All victimsBrassuco Alimentos
listed as brassuco.com.br · Claimed by Lockbit5 · listed 3 months ago
Status timeline
- ListedMar 1, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileBrassuco Alimentos (BRS) is a Brazilian food and beverage contract manufacturer founded in 1985, specialising in private-label production of powdered drinks, gelatins, cake mixes, chocolate drinks, peanut snacks, supplements, and related formulated products. Operating out of São Paulo state, the company serves domestic retailers, supermarkets, wholesalers, and international export markets. It offers end-to-end outsourced production including formulation, manufacturing, and co-packing for third-party brands.
- Industry
- Food & Beverage Contract Manufacturing (Private Label)
- Address
- São Paulo, Brazil (state inferred from phone prefix +55 11; full street address not available)
- Founded
- 1985
Attack summary
Severity: high — Data has been published (data_published status), confirming exfiltration rather than a mere listing. As a food manufacturer with international clients and private-label partners, exfiltrated data likely includes business-sensitive records, client contracts, and potentially employee PII, warranting a high severity rating.LockBit 5 claims to have attacked Brassuco Alimentos and has published data (disclosed status: data_published), indicating exfiltration of company data; the specific data categories and volume were not detailed in the available post excerpt.
Data the group says was taken
AI dossier — extracted from the leak post- Company business data
- Potentially supplier/partner information
- Potentially client brand records
- Potentially financial records
- Potentially employee information
What the group claims
Brassuco Alimentos has been a key player in the food industry since 1985. They make tasty drinks and...
Sources
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

