Ransomware victim disclosure
← All victimsBai-chi CPA Firm
Claimed by Orova · listed 3 hours ago
Status timeline
- ListedAug 25, 2026
- Data leakeddate unknown
At a glance
- Group
- Orova
- Status
- Data leaked
- Country
- Taiwan
- Sector
- Professional Services
- Listed on leak site
- Aug 25, 2026
About the victim
AI dossier — public-source company profileBai-chi CPA Firm is a Taiwanese accounting and tax services firm providing financial auditing, tax preparation, and corporate accounting services to clients. The firm maintains detailed financial records and audit documentation for its client base.
- Industry
- Accounting & Tax Services
Attack summary
Severity: critical — Exfiltration of regulated financial data at scale (client financial statements, tax filings, banking records) combined with personal identification documents (身分證) and KYC information. CPA firms hold highly sensitive data subject to professional confidentiality and financial privacy regulations. The breadth of data categories—spanning client PII, financial records, and tax information—constitutes a critical breach.Orova claims to have exfiltrated multiple categories of sensitive financial and personal data from Bai-chi CPA Firm, including client financial statements, audit working papers, tax filings, banking records, and personal identification documents. No ransom demand or operational disruption is stated in the leak post.
Data the group says was taken
AI dossier — extracted from the leak post- Client financial statements and ledgers
- Audit working papers and evidence
- Tax filing documentation
- Bank statements and payment records
- Customer personal identification and KYC data
- Client contracts and legal agreements
- Corporate registration and shareholder information
- Internal management reports and business plans
What the group claims
Bai-chi CPA Firm is a registered Taiwanese CPA practice.
The leak post
captured from the group's site5 Days 22 Hours 54 Minutes 7 Seconds 1. Client Financial Information - 財務報表, 財報, Balance Sheet, Income Statement, Cash Flow, General Ledger, Trial Balance, 科目餘額表, 分類帳 2. Audit Working Papers - 查核底稿 , 工作底稿, Audit Working Paper, Audit Evidence, Confirmation, 函證資料 3. Tax Information - 營業稅申報, 營所稅申報, 401, 稅務資料, 財政部文件, 稅額計算 4. Banking / Financial Transaction Data - 銀行存款, Bank Statement, 匯款資料, Payment Record, 帳戶資料 5. Customer Personal Information - 身分證, 證件, 客戶資料, KYC 6. Client Contracts / Legal Documents - 合約, NDA, Agreement, 委任書 7. Corporate Information - 公司登記, 股東資料, 董事資料, 公司章程 8. Internal Management Information - Management Report, Budget, Strategy, Business Plan, Revenue Analysis
Sources
Source
Indexed 3 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

