Ransomware victim disclosure
← All victimsKKG Gumpp
listed as Gumpp Kunststoffe · Claimed by Akira · listed 2 months ago
Status timeline
- ListedApr 23, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- Germany
- Sector
- Manufacturing
- Listed on leak site
- Apr 23, 2026
About the victim
AI dossier — public-source company profileKKG Gumpp is a wholesale company based in Königsbrunn, Bavaria, Germany, specialising in technical textiles and fabrics for various industrial and commercial applications. The company operates in the B2B segment, supplying clients with specialised fabric and textile products.
- Industry
- Technical Textiles & Fabrics Wholesale
- Address
- Königsbrunn, Bavaria, Germany
Attack summary
Severity: high — Confirmed exfiltration of employee PII (identity documents such as passports and driving licences) alongside business-sensitive data (client records, contracts, projects). The presence of regulated personal identity documents elevates this above medium severity.Akira claims to have exfiltrated corporate data from KKG Gumpp, including employee personal identity documents (passports, driving licences), client information, project files, and contracts/agreements, with publication of this data described as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee passports
- Employee driving licences
- Client information
- Project files
- Contracts and agreements
What the group claims
KKG Gumpp is a wholesale company based in Königsbrunn, Bavaria, s pecializing in technical textiles and fabrics for various applica tions. We will upload corporate data soon. Employee personal documents ( passports, DLs), client information, projects, contracts and agre ements, etc.
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

