Ransomware victim disclosure
← All victimsTecfi SpA
Claimed by Dragonforce · listed 4 hours ago
Status timeline
- ListedJun 16, 2026
- Data leakeddate unknown
At a glance
- Group
- Dragonforce
- Status
- Data leaked
- Country
- Italy
- Sector
- Business Services
- Listed on leak site
- Jun 16, 2026
About the victim
AI dossier — public-source company profileTecfi SpA is an Italian manufacturer of fastening systems with over 8,200 certified products sold to 2,540 clients across 65 countries. The company operates three production lines: plastic and rubber moulding, sheet metal moulding with blanking, and cold stamping/flatbed rolling. Based in Pastorano, Campania, Tecfi holds ISO 9001 and ISO 14001 certifications.
- Industry
- Fastening Systems & Hardware Manufacturing
- Address
- S.S. Appia km.193 - 81050 Pastorano (CE) - Italia; Viale delle Industrie e del Commercio n. 30, 81050 Pastorano (CE) - Italia
- Founded
- 2001
Attack summary
Severity: low — Disclosure status is 'data_published' but the leak post excerpt provides no enumeration of proof files, screenshots, or specific data categories. No operational disruption is mentioned. Without concrete evidence of sensitive data exfiltration or proof artifacts, this appears to be a listing/announcement only.The dragonforce group claims to have compromised Tecfi SpA and published data. The post does not explicitly state whether encryption, exfiltration, or both occurred, nor does it detail specific data categories at risk.
What the group claims
Tecfi is a company specialising in the design, production and sale of fastening systems. Going into more detail, three production lines can be highlighted. ▪ Plastic and rubber moulding ▪ Sheet metal moulding with blanking ▪ Cold stamping and flatbed rolling machines
Sources
Source
Indexed 4 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

