Ransomware victim disclosure
← All victimsSagent Pharmaceuticals
Claimed by Worldleaks · listed 3 months ago
Status timeline
- ListedMar 8, 2026
- Data leakeddate unknown
At a glance
- Group
- Worldleaks
- Status
- Data leaked
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Mar 8, 2026
About the victim
AI dossier — public-source company profileSagent Pharmaceuticals is a US-based leading provider of generic injectable pharmaceuticals, with a product portfolio spanning cardiovascular, anti-infective/antibacterial, and oncology therapeutic categories. The company offers products in multiple packaging configurations including vials, prefilled syringes, and premix bags. Sagent is known for its PreventIV Measures® packaging and labeling program aimed at reducing medication errors across the US healthcare system.
- Industry
- Generic Injectable Pharmaceuticals
Attack summary
Severity: high — The disclosed status is 'data_published', indicating confirmed data release against a pharmaceutical company operating in the healthcare sector, which is likely to involve regulated or sensitive business, employee, or patient-adjacent data; however, the absence of specific data inventory details prevents a 'critical' classification.The worldleaks group claims to have compromised Sagent Pharmaceuticals and has published data, though the specific nature of the attack (encryption, exfiltration, or both) and the volume or type of data disclosed are not detailed in the leak post.
Original description
AI-summarised, not from the leak postSagent Pharmaceuticals is an American specialty pharmaceutical company focused on the development, manufacturing, sourcing, and marketing of pharmaceuticals products, primarily injectable-based, for the therapeutic areas of cardiovascular, anti-infective/antibacterial, and oncology. The company emphasizes patient safety, product quality, and customer service.
Sources
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

