Ransomware victim disclosure
← All victimsPharma Test Apparatebau AG
Claimed by Akira · listed 2 days ago
Status timeline
- ListedAug 6, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- Switzerland
- Sector
- Manufacturing
- Listed on leak site
- Aug 6, 2026
About the victim
AI dossier — public-source company profilePharma Test Apparatebau AG is an internationally operating manufacturer specializing in development and production of high-value test devices and systems for the pharmaceutical industry. They produce both manual physical testing instruments and fully automated analytical systems designed to analyze active chemical composition and release rates of dosage forms.
- Industry
- Pharmaceutical Testing Equipment Manufacturing
Attack summary
Severity: critical — Confirmed exfiltration of regulated sensitive data at significant scale (46 GB), including employee PII (passports), financial records, and client information. Pharmaceutical sector is regulated; exposure of client data and formulation-related contracts poses regulatory and competitive harm.Akira group claims to have exfiltrated 46 GB of corporate data including employee personal information (passports), financial records, contracts, NDAs, and client information. The group states intention to publish this data.
Data the group says was taken
AI dossier — extracted from the leak post- Employee passports and personal identification
- Financial records
- Contracts and agreements
- NDAs
- Client information
What the group claims
Pharma Test is an internationally leading manufacturer and household name for the development a nd production of high-value test devices and systems. They offer a complete product range from manual, physical testing instruments to fully automated, analytical test systems to analyze the active chemical composition of a dosage form as well as its release rate. We will upload 46gb corporate data soon. Employee personal information (passports and so on), f inancials, contracts and agreements, NDA, clients information and so on.
Source
Indexed 2 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

