Ransomware victim disclosure
← All victimsLambertz GmbH & Co. KG
listed as lambertz.de · Claimed by Blackbasta · listed 2 years ago
Status timeline
- ListedJun 30, 2024
- Data leakeddate unknown
At a glance
- Group
- Blackbasta
- Status
- Data leaked
- Country
- Germany
- Listed on leak site
- Jun 30, 2024
About the victim
AI dossier — public-source company profileLambertz is one of Germany's oldest confectionery manufacturers, founded in 1688 in Aachen. The family-owned company produces fine baked goods and confectionery products, operating multiple production facilities and a retail network. The group celebrated its 333rd anniversary in 2021.
- Industry
- Confectionery & Baked Goods Manufacturing
- Address
- Borchersstrasse 18, D-52072 Aachen, Germany
- Founded
- 1688
Attack summary
Severity: high — Confirmed exfiltration of 800 GB+ of sensitive data including PII (employee records), financial records, and HR files from an established industrial company. Data has been published. No operational disruption stated but data breach is substantial.BlackBasta claims to have exfiltrated approximately 800 GB of company data including employee personnel records, financial/accounting data (FiBu), human resources files, and unspecified confidential business information.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personnel data
- Financial/accounting records (FiBu)
- Human resources files
- Confidential business data
What the group claims
The history of Lambertz is impressive, exciting and rich - Lambertz manages to make the leap from a small bakery in Aachen to one of the oldest confectionery manufacturers in Germany. In 2021, the traditional and family-owned company celebrated its 333rd anniversary.SITE: www.lambertz.de Address : Henry Lambertz GmbH & Co. KG: Borchersstrasse 18 D-52072 Aachen Tel# +49 (0)241 / 89 05-0ALL DATA SIZE: ≈800gb+ 1. Employee Personnel data… 2. Firm data: FiBu, Human Resources… 3. Confidential data… & etc…
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

