Ransomware victim disclosure
← All victimsatlasoil.com
Claimed by Blackbasta · listed 2 years ago
Status timeline
- ListedMay 21, 2024
- Data leakeddate unknown
At a glance
- Group
- Blackbasta
- Status
- Data leaked
- Country
- United States
- Sector
- Energy
- Listed on leak site
- May 21, 2024
About the victim
AI dossier — public-source company profileAtlas Oil, headquartered in Houston, Texas, is a major fuel distributor and part of Simon Group Holdings. Founded in 1985, the company provides single-source solutions for fuel, transportation, and logistics, delivering over 1 billion gallons of fuel annually across 49 US states.
- Industry
- Fuel Distribution & Logistics
- Address
- 2050 W Sam Houston Pkwy S, Houston, TX 77042, USA
- Founded
- 1985
Attack summary
Severity: critical — Large-scale exfiltration (730 GB) of sensitive corporate data including HR, finance, and executive records from critical infrastructure sector (fuel distribution); direct operational impact potential given energy sector criticality.BlackBasta claims to have exfiltrated approximately 730 GB of corporate data including accounts, HR records, financial data, executive information, departmental records, and employee data.
Data the group says was taken
AI dossier — extracted from the leak post- Corporate accounts
- HR records
- Finance data
- Executive information
- Departmental data
- Employee personal data
What the group claims
Headquartered in Houston, TX, Atlas Oil is the inaugural Simon Group Holdings company. Since our founding in 1985, Atlas has grown through technological and operational innovation, all while maintaining our unwavering commitment to customer success. Atlas offers single-source solutions for fuel, transportation and logistics and is one of the largest fuel distributors in the country, delivering over 1 billion gallons of fuel annually to customers in 49 states.SITE: www.atlasoil.com Address : 2050 W Sam Houston Pkwy S Houston, TX 77042 USA Tel.# (800) 878-2000ALL DATA SIZE: ≈730gb 1. Corporate data: Accounts, HR, Finance, Executive… 2. Departments data 3. Users, Employees data & etc…
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

