Ransomware victim disclosure
← All victimsGokals
Claimed by Spacebears · listed 8 days ago
Status timeline
- Listed
May 13, 2026
Current state: Listed for ransom
At a glance
- Group
- Spacebears
- Status
- Listed for ransom
- Country
- Fiji
- Listed on leak site
- May 13, 2026
About the victim
AI dossier — public-source company profileGokals is described as the leading consumer electronics retailer and distributor in the South Pacific, dealing in small home appliances, audio-visual products, and white goods. The company is based in Fiji and serves the broader South Pacific region. No further details on scale or founding are publicly available from the provided sources.
- Industry
- Consumer Electronics & Computers Retail
Attack summary
Severity: medium — The group claims exfiltration of financial reports and databases which represent significant business data, but there is no confirmed scale, no evidence of regulated PII or medical/government data, no published proof files, and no ransom amount — keeping this at medium rather than high.Spacebears claims to have exfiltrated financial reports, databases, and other valuable business documents (in formats including doc, docx, xls, pdf) from Gokals; no encryption claim or ransom amount is stated.
Data the group says was taken
AI dossier — extracted from the leak post- Financial reports
- Databases
- Word documents (.doc, .docx)
- Spreadsheets (.xls)
- PDF documents
What the group claims
GOKALS is the leading consumer electronics retailer and distributor in the South Pacific - be it small Home Appliances; Audio Visual products or White Goods.
The leak post
captured from the group's site## Gokals Consumer Electronics & Computers Retail · Fiji **GOKALS is the leading consumer electronics retailer and distributor in the South Pacific - be it small Home Appliances; Audio Visual products or White Goods.** * _Financial reports, Data Bases and other Valuable Information_ * _doc, docx, xls, pdf... etc_
Data the group says was taken
- Financial reports
- Databases
- Documents
- Spreadsheets
- PDFs
Screenshot of the leak post

Sources
Source
Indexed 8 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
