Ransomware victim disclosure
← All victimsTerritorio Energia Ambiente S.P.A
listed as teaspa.it · Claimed by Blackbasta · listed 2 years ago
Status timeline
- ListedMay 4, 2024
- Data leakeddate unknown
At a glance
- Group
- Blackbasta
- Status
- Data leaked
- Country
- Italy
- Sector
- Business Services
- Listed on leak site
- May 4, 2024
About the victim
AI dossier — public-source company profileTerritorio Energia Ambiente S.P.A is an Italian utility and environmental services company providing natural gas and electricity distribution, waste and cleaning management, sewer servicing, technical and engineering services, and road maintenance across Italy.
- Industry
- Utilities & Environmental Services
- Address
- Via Taliercio 3, 46100 Mantova, Italy
Attack summary
Severity: high — Confirmed exfiltration of ~1 TB involving employee PII and sensitive company/project data from a critical infrastructure operator (utilities and waste management). Data already published with no ransom demand.BlackBasta claims to have exfiltrated approximately 1 TB of data including employee personal documents, company data, and project files from Territorio Energia Ambiente S.P.A. The group has published the data.
Data the group says was taken
AI dossier — extracted from the leak post- employee personal documents
- user credentials/employee folder
- company data
- projects documentation
What the group claims
Territorio Energia Ambiente S.P.A provides commercial services. The Company offers natural gas and electricity distribution, as well as waste and cleaning management, sewer servicing, technical and engineering services, and road maintenance activities. Territorio Energia Ambiente serves customers in Italy.SITE: www.teaspa.it Address : Via Taliercio 3 Mantova, 46100 ItalyALL DATA SIZE: ≈1tb 1. Users, Employees folder with personal docs 2. Company data 3. Projects & etc…
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

