Ransomware victim disclosure
← All victimsPaass Logistik
Claimed by Akira · listed 3 months ago
Status timeline
- ListedMar 10, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- Germany
- Sector
- Transportation/Logistics
- Listed on leak site
- Mar 10, 2026
- Data size
- 26 GB
About the victim
AI dossier — public-source company profilePaass Logistik is a transportation and trucking company based in Köln (Cologne), Germany. The company operates in the logistics sector and maintains contracts with major clients including DHL. No further details about scale or founding are publicly available from the provided sources.
- Industry
- Transportation & Trucking
- Address
- Köln, Germany
Attack summary
Severity: critical — Confirmed exfiltration of regulated PII (passports, driving licences) at employee scale combined with sensitive financial data, client contracts with named major partners (DHL), and NDAs; data is stated as published (disclosed status: data_published).The Akira ransomware group claims to have exfiltrated approximately 26 GB of corporate data from Paass Logistik, with planned publication of employee identity documents, detailed financial records, client files, contracts and agreements, and NDAs.
Data the group says was taken
AI dossier — extracted from the leak post- Employee passports
- Employee driving licences
- Detailed financial records
- Client files
- Contracts and agreements
- NDAs
What the group claims
Paass Logistik is a transportation/trucking/railroad company base d out of Köln, Germany. We will upload 26gb of corporate data soon. Employee files (passp orts DLs), detailed financials, clients' files, contracts and agr eements (DHL and others), NDAs and so on.
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

