Ransomware victim disclosure
← All victimsNoon Sugar Mills Limited
listed as noonsugar.com · Claimed by M3Rx · listed 5 hours ago
Status timeline
- ListedSep 29, 2026
- Data leakeddate unknown
At a glance
- Group
- M3Rx
- Status
- Data leaked
- Country
- United Arab Emirates
- Sector
- Retail & E-Commerce
- Listed on leak site
- Sep 29, 2026
About the victim
AI dossier — public-source company profileNoon Sugar Mills Limited is a Pakistani sugar and ethanol manufacturer incorporated in 1964 and listed on Pakistan's stock exchanges. The company operates sugar mills with a crushing capacity of 19,000 tonnes per day and multiple ethanol distilleries with combined production capacity of 230,000 liters per day, plus environmental treatment facilities.
- Industry
- Sugar Manufacturing & Ethanol Production
- Address
- Punjab, Pakistan
- Founded
- 1964
Attack summary
Severity: low — Leak post contains only a sales listing with no proof files, screenshots, or technical details about the breach. No confirmation of data exfiltration, encryption, or operational impact. Appears to be a claim without supporting evidence.The m3rx group claims to have compromised Noon Sugar Mills Limited and is offering the stolen data for sale. No specific details are provided about what data was exfiltrated or whether systems were encrypted.
What the group claims
+92 4235831462 , Noon Sugar Mills Limited is one of Pakistan's oldest and most esteemed business entities, specializing in the production of white sugar and industrial-grade ethanol. Established in 1964, the company has significantly expanded its sugarcane crushing capacity and ethanol production capabilities, reflecting its commitment to continuous improvement and environmental sustainability. The company serves a diverse clientele, including corporate clients and the agricultural community, while upholding high ethical standards and promoting social responsibility. With ISO certifications in place, Noon Sugar Mills Limited emphasizes quality and compliance in its operations. Stolen: --
The leak post
captured from the group's siteIf you are interested in this data, please contact our support.Tox: 9A1217BEDA4AB77052A25D17CB6FFB34AFA2BE462E607F2FD8E1DF1DDD4CA16A64E18B1A0BF2
Sources
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

