Ransomware victim disclosure
← All victimsMicroforum
Claimed by Akira · listed 4 months ago
Status timeline
- ListedFeb 24, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- Italy
- Sector
- Technology
- Listed on leak site
- Feb 24, 2026
- Data size
- 1 TB
About the victim
AI dossier — public-source company profileMicroforum is an Italian company specializing in vinyl record pressing and physical media production, including CD, DVD, Blu-Ray, and cassette duplication services. The company also offers bespoke packaging solutions for media products. It serves notable clients such as PepsiCo, as evidenced by referenced confidential agreements.
- Industry
- Physical Media Manufacturing & Duplication
Attack summary
Severity: critical — Over 1 TB of exfiltrated data includes regulated employee/HR records (PII), confidential NDAs, detailed financial records, and named third-party client agreements (PepsiCo), constituting large-scale exfiltration of sensitive business and personal data with disclosure status of data_published.Akira claims to have exfiltrated over 1 TB of corporate data from Microforum, including employee files, project specifications, detailed financials, confidential client agreements (including with PepsiCo), HR files, and NDAs; the group states the data will be published imminently.
Data the group says was taken
AI dossier — extracted from the leak post- Employee files
- Project specifications
- Detailed financials
- Confidential client agreements
- HR files
- NDAs
What the group claims
WMicroforum specializes in vinyl record pressing and offers a var iety of services including CD/DVD & Blu-Ray production, cassette duplication, and bespoke packaging. We will upload over 1TB of corporate data soon. Employee files, s pecifications, projects, detailed financials, confidential agreem ents (PEPSICO and others), HR files, NDAs, etc.
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

