Ransomware victim disclosure
← All victimsVitex Pharmaceuticals
listed as vitexpharma.com · Claimed by Lockbit5 · listed 2 months ago
Status timeline
- ListedApr 14, 2026
- Data leakeddate unknown
At a glance
- Group
- Lockbit5
- Status
- Data leaked
- Country
- Australia
- Sector
- Healthcare
- Listed on leak site
- Apr 14, 2026
About the victim
AI dossier — public-source company profileVitex Pharmaceuticals is Australia's leading contract manufacturer of vitamins, minerals and nutritional supplements, founded in 1989 and headquartered in Eastern Creek, NSW. The company offers end-to-end services including product development, analytical testing, regulatory affairs, manufacturing, packaging and supply chain management. It operates as a global partner in complementary medicine contract manufacturing.
- Industry
- Contract Manufacturing – Vitamins, Minerals & Nutritional Supplements
- Address
- 4 Alspec Place, Eastern Creek NSW 2766, Australia
- Founded
- 1989
Attack summary
Severity: high — Data has been confirmed published by the ransomware group, indicating exfiltration of significant business data from a pharmaceutical contract manufacturer that handles client formulations, regulatory documentation, and supply chain information. While no explicit PII-at-scale or medical patient data is confirmed, the sensitivity of pharmaceutical manufacturing data and the data_published status elevates this to high.LockBit 5 claims an attack on Vitex Pharmaceuticals and has published data (disclosed status: data_published), indicating exfiltration of company data; specific data categories and volume were not detailed in the truncated leak post.
Data the group says was taken
AI dossier — extracted from the leak post- Company business data
- Potentially client/partner records
- Potentially regulatory and product documentation
What the group claims
Vitex Pharmaceuticals is Australia's leading contract manufacturer specializing in vitamins, mi...
Sources
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

