Ransomware victim disclosure
← All victimsFlores Silvestres
listed as Silvestres · Claimed by Thegentlemen · listed 4 months ago
Status timeline
- ListedFeb 25, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- United States
- Listed on leak site
- Feb 25, 2026
About the victim
AI dossier — public-source company profileFlores Silvestres is a Colombian flower exporter established in 1988, specializing in chrysanthemums, snapdragons, and gerberas alongside a broader range of fresh-cut flowers. The company operates a vertically integrated model from cultivation to international distribution, producing nearly 85 million stems annually and supporting over 1,100 direct jobs. It exports globally from farms in El Carmen and La Ceja, Colombia.
- Industry
- Fresh-Cut Flower Export & Cultivation
- Employees
- 1100+
- Founded
- 1988
Attack summary
Severity: medium — Data is listed as published, indicating confirmed exfiltration has been claimed; however, the leak post was inaccessible (bot-gated), so the nature, volume, and sensitivity of the data cannot be verified. The company handles international trade and employee records which could include PII, but no regulated data categories are confirmed.The group 'thegentlemen' claims to have compromised Flores Silvestres and has published data (disclosed status: data_published); however, the leak post content was blocked by an anti-bot verification page, preventing assessment of specific exfiltration or encryption claims.
What the group claims
silvestres.com zoominfo.com/c/silvestres-sa/359809243 Silvestres Flowers has been dedicated to growing and sharing Colombian feelings through high-quality fresh cut flowers since 1988. With an annual production of nearly 85,000 stems, they have created over 1,160 jobs focused on the processes of cultivation, marketing, and distribution. Their intended clients include global customers who appreciate authentic floral experiences. They are recognized for their excellence in flower quality and commitment to sustainable practices
The leak post
captured from the group's siteGentlecloud Protection 🛡️ Gentlecloud Verifying your browser... Initializing security checks... I'm not a bot
Sources
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

