Ransomware victim disclosure
← All victimsHuber AG
listed as Huber · Claimed by Akira · listed 4 months ago
Status timeline
- ListedFeb 24, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileHuber AG is a German manufacturer specialising in mailbox and parcel locker systems for residential complexes, as well as individual and group mailboxes sold through specialist retailers. The company operates in the postal and building-hardware supply chain segment. No further scale or location details are available from the leak post or public sources.
- Industry
- Mailbox & Parcel Locker Systems Manufacturing
Attack summary
Severity: high — Confirmed exfiltration is claimed, including PII in the form of identity document scans (passports, DLs) for employees, alongside sensitive business data (financials, project specs). The 'data_published' status and imminent upload elevate this beyond medium, though the scale of affected individuals is unknown, stopping short of critical.Akira claims to have exfiltrated corporate data from Huber AG, including employee personal identity documents (passports, driving licences), technical specifications, project files, and financial records, with publication of the data described as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee passport scans
- Employee driving licence scans
- Technical specifications
- Project files
- Financial records
What the group claims
Huber AG manufactures mailbox and parcel locker systems for resid ential complexes, as well as individual and group mailboxes for s pecialist retailers. We will upload corporate data soon. Employee personal documents s cans (passports, DLs and so on), specifications, projects, financ ials, etc.
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

