Ransomware victim disclosure
← All victimscpacsystems.se
Claimed by Blackbasta · listed 2 years ago
Status timeline
- ListedMar 12, 2024
- Data leakeddate unknown
At a glance
- Group
- Blackbasta
- Status
- Data leaked
- Country
- Sweden
- Sector
- Technology
- Listed on leak site
- Mar 12, 2024
About the victim
AI dossier — public-source company profileCPAC Systems AB is a Swedish technology company specializing in safety-critical electronic control systems for vehicles, including autonomous trucks, marine vessels, construction equipment, and agricultural machinery. A member of the Volvo Group with 25 years of in-house expertise, the company develops embedded systems for vehicle automation, electromobility, and connectivity across multiple industries.
- Industry
- Automotive & Marine Control Systems
- Address
- Bergskroken 3, 431 37 Mölndal, Sweden
- Employees
- 100
Attack summary
Severity: high — Confirmed exfiltration of ~1 TB including financial and employee data from a critical infrastructure supplier (automotive/marine control systems). Data published by threat actor. Company is part of Volvo Group, amplifying supply-chain and operational risk.Black Basta claims to have exfiltrated approximately 1 TB of data from CPAC Systems, including financial data, user data, and employee information. The group has published the data.
Data the group says was taken
AI dossier — extracted from the leak post- Financial data
- User data
- Employee information
What the group claims
Cpac Systems AB develops, manufactures, and markets safety electronic control systems for vehicles. The Company provides maneuverability, vehicle communication, hybrid control systems, safety critical vehicle control systems, connectivity, and power management for on land and sea vehicles. Cpac Systems engages in services in Sweden and internationally.SITE: www.cpacsystems.se Address : Bergskroken 3 431 37 Mölndal SwedenALL DATA SIZE: ~1tb 1. Financial data 2. Users Data 3. employees information and etc…
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

