Ransomware victim disclosure
← All victimsFenol Kimya
Claimed by Global · listed 1 year ago
Status timeline
- ListedJun 11, 2025
- Data leakeddate unknown
At a glance
- Group
- Global
- Status
- Data leaked
- Country
- Turkey
- Sector
- Manufacturing
- Listed on leak site
- Jun 11, 2025
About the victim
AI dossier — public-source company profileFenol Kimya is a Turkish chemical manufacturing company with 20 years of operational history. They provide chemical products and services including on-site technical analysis, machine formulations, sustainability consulting, workforce evaluation, and R&D solutions to industrial partners.
- Industry
- Chemical Manufacturing
Attack summary
Severity: medium — Data has been published (confirmed disclosure status), indicating confirmed exfiltration. However, no proof files/screenshots are quantified, no specific sensitive data categories are listed, and the breach announcement lacks operational impact detail. The company operates in chemical manufacturing with potential for sensitive R&D and client data, warranting medium severity.The threat actor claims to have compromised Fenol Kimya and published data from the breach. The post does not explicitly state whether data was exfiltrated, encrypted, or both, nor does it detail specific data categories at risk.
What the group claims
With our 20 years of knowledge and expertise; We promise not only a quality product, but more.. We offer our partners not only our products, but also services, on-site technical analysis of machines and formulations, sustainability development, workforce evaluations and R&D solutions. https://fenol.com.tr
Source
Indexed 1 year agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

