Ransomware victim disclosure
← All victimsMotleys Asset Disposition Group
Claimed by Akira · listed 3 months ago
Status timeline
- ListedMar 30, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Sector
- Business Services
- Listed on leak site
- Mar 30, 2026
- Data size
- 11 GB
About the victim
AI dossier — public-source company profileMotleys Asset Disposition Group is based in Richmond, Virginia and provides sales, appraisal, and acquisition services. The company offers real estate services, auction services, and appraisals, among other asset disposition solutions.
- Industry
- Asset Disposition & Auction Services
- Address
- Richmond, VA, United States
Attack summary
Severity: critical — The claimed exfiltration explicitly includes regulated PII at scale — SSNs, passports, and driver's licenses for employees — alongside sensitive financial and contractual business data, meeting the threshold for critical severity.Akira claims to have exfiltrated approximately 11 GB of corporate data, including employee personal identity documents (passports, driver's licenses, SSNs), project files, detailed financial records, contracts and agreements, client and partner files, and NDAs, with publication of the data imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee passports
- Employee driver's licenses
- Social Security Numbers (SSNs)
- Project files
- Detailed financial records
- Contracts and agreements
- Client files
- Partner files
- Non-disclosure agreements (NDAs)
What the group claims
Based in Richmond, VA, Motleys Asset Disposition Group offers sal es, appraisal and acquisition services. The company offers real e state services, auction services, appraisals and more. We will upload 11gb of corporate data soon. Employee personal doc uments (passports, DLs, SSNs and so on), project files, detailed financials, contracts and agreements, client and partner files, N DA, etc.
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

