Ransomware victim disclosure
← All victimsWesmar
Claimed by Akira · listed 14 hours ago
Status timeline
- ListedOct 1, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- Oct 1, 2026
About the victim
AI dossier — public-source company profileWesmar specializes in advanced marine technology, manufacturing thrusters, propulsion systems, and commercial fishing sonar for clients ranging from cruise ships and luxury yachts to commercial fishing operations.
- Industry
- Marine Technology & Propulsion Systems
Attack summary
Severity: critical — Confirmed exfiltration of sensitive PII at scale (employee passports, driver's licenses, death certificates), financial data, payment card details, and client information. This represents multiple categories of regulated and highly sensitive data.The Akira group claims to have exfiltrated approximately 66 GB of corporate data, including employee personal documents (passports, driver's licenses, death certificates), financial records, project files, credit card and payment details, client information, and NDAs.
Data the group says was taken
AI dossier — extracted from the leak post- employee passports and identification documents
- death certificates
- financial records
- project files
- credit card details
- payment information
- client information
- non-disclosure agreements
What the group claims
WESMAR specializes in advanced marine technology, offering a range of products including thrust ers, propulsion systems, and commercial fishing sonar. Their innovative solutions cater to vari ous clients, from cruise boats and luxury yachts to commercial fishing operations, ensuring enh anced stability, comfort, and efficiency at sea. We will upload 66gb of corporate data soon. Employee personal documents (passports, DLs, death certs), financials, lots of projects, credit cards, payment details, client information, NDAs a nd so on.
Source
Indexed 14 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

