Ransomware victim disclosure
← All victimsSKF.com
Claimed by raznatovic · listed 2 years ago
Status timeline
- Listed
Dec 17, 2023
- Data leaked
At a glance
- Group
- raznatovic
- Status
- Data leaked
- Country
- Sweden
- Sector
- Manufacturing
- Listed on leak site
- Dec 17, 2023
- Data size
- 50 GB
About the victim
AI dossier — public-source company profileSKF (Svenska Kullagerfabriken) is a Swedish multinational manufacturing company headquartered in Gothenburg, Sweden, specialising in bearings, seals, lubrication systems, and related products and services for industrial and automotive applications. Founded in 1907, SKF operates in approximately 130 countries and serves a broad range of industries including aerospace, energy, and heavy machinery. The company is one of the world's largest bearing manufacturers and is listed on the Nasdaq Stockholm exchange.
- Industry
- Industrial Bearings & Rotating Equipment Manufacturing
- Address
- Hornsgatan 1, 415 50 Gothenburg, Sweden
- Employees
- 40000-50000
- Founded
- 1907
Attack summary
Severity: high — 50 GB of data has been confirmed published (disclosed_status: data_published) by the threat actor, including user data and internal chat logs from a large multinational industrial manufacturer. The scale of the organisation and the nature of the data (user records, internal communications) represent significant business and potential PII exposure, though no explicitly medical, financial, or government-regulated data is confirmed.The raznatovic group claims to have exfiltrated approximately 50 GB of data from SKF, stated to include user data and chat logs, and has published the data following an apparent refusal to pay a ransom.
Data the group says was taken
AI dossier — extracted from the leak post- User data
- Chat logs
What the group claims
Maybe Next time you will learn paying a ransomw will cost you less :) Data is around 50gb, including user data and chat logs. Download
Sources
- Victim siteskf.com
- Leak posthttps://t.me/ransomed_channel/176
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
