Ransomware victim disclosure
← All victimsYip In Tsoi & Co Ltd
listed as Yip in Tsoi · Claimed by Snatch · listed 4 years ago
Status timeline
- ListedMar 31, 2022
- Data leakeddate unknown
At a glance
- Group
- Snatch
- Status
- Data leaked
- Country
- Thailand
- Sector
- Information Technology
- Listed on leak site
- Mar 31, 2022
About the victim
AI dossier — public-source company profileYip In Tsoi & Co Ltd is an enterprise based in Bangkok, Thailand, operating in the Computer Systems Design Services industry. Founded in 1930, the company employs approximately 1,000 people. It is one of the longer-established IT services firms in the region.
- Industry
- Computer Systems Design Services
- Address
- Bangkok, Thailand
- Employees
- 1000
- Founded
- 1930
Attack summary
Severity: high — Data has been published (disclosed status: data_published) by a known ransomware group targeting a significant IT services firm with ~1,000 employees, indicating confirmed exfiltration of business data; however, no specific regulated or sensitive data categories (PII at scale, medical, financial) are confirmed, placing this at high rather than critical.The Snatch ransomware group claims an attack on Yip In Tsoi & Co Ltd and has disclosed the status as data_published, indicating exfiltrated data has been released, though specific details on the volume or nature of exfiltrated files are not stated in the post.
What the group claims
Yip In Tsoi is an enterprise located in Thailand, with the main office in Bangkok , Special Governed District of. The enterprise operates in the Computer Systems Design Services industry. It was first established on 1930. Yip In Tsoi & Co Ltd currently employs 1,000
Source
Indexed 4 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

