Ransomware victim disclosure
← All victimsINKA Group GmbH & Co. KG
listed as INKA Group GmbH Co · Claimed by Thegentlemen · listed 1 day ago
Status timeline
- ListedAug 7, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- Germany
- Sector
- Manufacturing
- Listed on leak site
- Aug 7, 2026
About the victim
AI dossier — public-source company profileINKA Group GmbH & Co. KG is a German real estate holding company headquartered in Munich, registered in the Munich Commercial Register under HRA 99442. The company specializes in leasing and renting land, buildings, and apartments, as well as managing commercial real estate on a fee or contract basis.
- Industry
- Real Estate Management & Leasing
- Address
- Munich, Germany
Attack summary
Severity: medium — Data has been published by the group (disclosed status: data_published), but no specific proof files or screenshots are referenced in the post, and the nature/sensitivity of exfiltrated data is not explicitly stated. Real estate and property management data may include PII and sensitive business information, but scale and confirmation are unclear.The threat actor claims to have breached INKA Group and published data. The post does not explicitly detail what data was exfiltrated or what systems were encrypted.
Data the group says was taken
AI dossier — extracted from the leak post- Real estate transaction records
- Tenant information
- Property management files
- Commercial contracts
What the group claims
INKA Group GmbH & Co. KG is a German real estate holding company headquartered in Munich, registered in the Munich Commercial Register under HRA 99442. It specializes in leasing and renting own or leased land, buildings, and apartments, as well as managing commercial real estate on a fee or contract basis. The company operates as a closed investment and management vehicle with no public website or brand. It should not be confused with the Turkish İnka Group holding or other similarly named companies.
Source
Indexed 1 day agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

