Ransomware victim disclosure
← All victimsConseil régional des Pays de la Loire
listed as paysdelaloire.fr · Claimed by Lockbit3 · listed 2 years ago
Status timeline
- ListedJul 19, 2024
- Data leakeddate unknown
At a glance
- Group
- Lockbit3
- Status
- Data leaked
- Country
- France
- Sector
- Government
- Listed on leak site
- Jul 19, 2024
About the victim
AI dossier — public-source company profileThe Regional Council of Pays de la Loire is a French regional government body responsible for economic development, education, transport, territorial planning, and public services across the Pays de la Loire region in western France. It provides grants, support programs, and administrative services to businesses, individuals, associations, and local municipalities.
- Industry
- Government Administration
Attack summary
Severity: high — Attack on a French regional government entity constitutes a critical infrastructure compromise with potential operational and data security implications, even without confirmed exfiltration details in the visible leak post.LockBit3 claims to have compromised the Pays de la Loire Regional Council. The group has published data but no specific details about encryption, exfiltration scope, or data categories are evident from the leak post excerpt provided.
Data the group says was taken
AI dossier — extracted from the leak post- Regional administration records
- Government databases
- Public service documents
What the group claims
Regional aid and services foreconomy and innovation Industry, commerce, agriculture, fishing, food or research... I discover all the regional aid and services useful to my projects for my business, my farm or my organization.
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

