Ransomware victim disclosure
← All victimsGfeller Treuhand und Verwaltungs
Claimed by Thegentlemen · listed 4 days ago
Status timeline
- ListedAug 14, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- Switzerland
- Sector
- Professional Services
- Listed on leak site
- Aug 14, 2026
About the victim
AI dossier — public-source company profileGfeller Treuhand und Verwaltungs AG is a Swiss real estate and fiduciary company based in Dübendorf, operating since 1980. They provide comprehensive property management, real estate sales, leasing, valuation, and administrative services to clients across Switzerland, supported by modern IT infrastructure.
- Industry
- Real Estate Management & Fiduciary Services
- Address
- Dübendorf, Switzerland
- Founded
- 1980
Attack summary
Severity: medium — Company listed and disclosed as breached with data published status, but the leak post provides no details on proof files, data types, exfiltration, or encryption. The absence of specifics and proof documentation limits severity assessment; however, as a fiduciary and real estate firm handling client property and financial information, potential exposure of sensitive client data warrants medium classification.The group claims to have accessed Gfeller Treuhand und Verwaltungs AG's systems. The leak post does not explicitly state what data was exfiltrated or encrypted, nor does it describe the scope of the breach or specific data categories at risk.
What the group claims
gfeller-treuhand.ch zoominfo.com/c/gfeller-treuhand-und-verwaltungs-ag/372661395 Gfeller Treuhand und Verwaltungs AG is a Swiss real estate and fiduciary company based in Dübendorf, operating since 1980. They specialize in comprehensive property management, real estate sales, and leasing services. The firm provides professional administrative support, utilizing modern IT solutions to efficiently handle property maintenance and tenant relations.
Sources
- Victim sitegfeller-treuhand.ch
Source
Indexed 4 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

