Ransomware victim disclosure
← All victimsToscana Promozione Turistica
listed as Toscana Promozione · Claimed by Moneymessage · listed 3 years ago
Status timeline
- Listed
Oct 3, 2023
- Data leaked
At a glance
- Group
- Moneymessage
- Status
- Data leaked
- Country
- Italy
- Sector
- Business Services
- Listed on leak site
- Oct 3, 2023
About the victim
AI dossier — public-source company profileToscana Promozione Turistica is a public agency of the Tuscany Region (Regione Toscana) responsible for promoting tourism in Tuscany, Italy. It coordinates marketing activities, supports tourism operators, and markets the region at national and international level. The organisation operates under regional government authority.
- Industry
- Regional Tourism Promotion & Marketing
- Address
- Florence, Tuscany, Italy
Attack summary
Severity: high — The status is data_published, meaning data has been actively released by the threat actor. As a public/regional government-affiliated agency, any exfiltrated data likely includes personally identifiable information of staff, partners, or stakeholders, and the publication of internal government-linked agency data constitutes a significant disclosure.The Moneymessage ransomware group claims to have attacked Toscana Promozione Turistica and has published data (disclosed status: data_published); no specific details about encryption, exfiltration volumes, or ransom demand are captured in the available leak post.
Data the group says was taken
AI dossier — extracted from the leak post- Internal organisational documents
- Potentially personal data of staff or partners
- Tourism promotion and marketing files
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
