Ransomware victim disclosure
← All victimsMeirc Training and Consulting
Claimed by Incransom · listed 3 months ago
Status timeline
- ListedMay 31, 2026
Current state: Listed for ransom
At a glance
- Group
- Incransom
- Status
- Listed for ransom
- Country
- United Arab Emirates
- Sector
- Training & Consulting
- Listed on leak site
- May 31, 2026
- Data size
- 1TB
About the victim
AI dossier — public-source company profileMeirc Training and Consulting is a training and consulting firm based in the United Arab Emirates offering a wide range of programs across accounting, finance, artificial intelligence, and project management. The company is recognized as a trusted training and consulting partner in the region.
- Industry
- Training & Consulting
Attack summary
Severity: high — Confirmed exfiltration of 1 TB of data including employee PII at scale, financial records, and internal business documents; operational encryption claimed; substantial proof files published (21 proof items).INC Ransom claims to have encrypted the company's network and exfiltrated 1 TB of data including accounting records, internal email, planning documents, budgets, and personal information of all employees. The group threatened to publish the data within one week.
Data the group says was taken
AI dossier — extracted from the leak post- accounting records
- internal email
- planning documents
- budgets
- employee personal information
The group's post references roughly 21 proof files.
What the group claims
Meirc offer a wide range of training programs across various categories, including accounting, finance, artificial intelligence, project management. They are recognized as a 'trusted' training and consulting partner. The attackers accessed the entire MEIRC network and downloaded 1TB of data including accounting, internal mail, planning, budgets, and all personal information of all employees.
The leak post
captured from the group's site```
{"type":true,"message":"Success: got announcements.","payload":{"length":713,"announcements":[{"_id":"6a0a55f6d152110a6acc24fa","company":{"company_name":"Meirc%20training%20and%20consulting","country":"AE","revenue":21000000},"categories":["Encrypted","Proof"],"description":["Meirc%20offer%20a%20wide%20range%20of%20training%20programs%20across%20various%20categories%2C%20including%20accounting%2C%20finance%2C%20artificial%20intelligence%2C%20project%20management.%0D","They%20is%20recognized%20as%20a%20%22trusted%22%20training%20and%20consulting%20partner.%0D","%0D","We%20accessed%20the%20entire%20MEIRC%20network%20and%20downloaded%201TB%20of%20data%0D","-%20accounting%0D","-%20internal%20mail%0D","-planning%0D","-%20budgets%0D","-%20all%20personal%20information%20of%20all%20employees%20of%20the%20company%0D","%0D","In%20a%20week%20everything%20will%20be%20in%20the%20public%20domain."],"logo":"6a0a55f6d152110a6acc24e2","proof":["6a0a55f6d152110a6acc24cd","6a0a55f6d152110a6acc24ce","6a0a55f6d152110a6acc24cf","6a0a55f6d152110a6acc24d0","6a0a55f6d152110a6acc24d1","6a0a55f6d152110a6acc24d2","6a0a55f6d152110a6acc24d3","6a0a55f6d152110a6acc24d4","6a0a55f6d152110a6acc24d5","6a0a55f6d1…Data the group says was taken
- accounting
- internal mail
- planning
- budgets
- employee personal information
Screenshot of the leak post

Sources
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

