Ransomware victim disclosure
← All victimsASB Saarland
Claimed by Qilin · listed 3 months ago
Status timeline
- ListedMar 6, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileASB Saarland (Arbeiter-Samariter-Bund im Saarland) is the Saarland regional chapter of the Arbeiter-Samariter-Bund, a German non-profit welfare and emergency services organisation founded in 1888. It provides a broad range of services including ambulance and emergency medical services, disaster relief, elderly care (residential and ambulatory), home emergency call systems, youth welfare, social psychiatry, and refugee assistance. The organisation operates multiple care facilities, local chapters, and volunteer units across the Saarland region of Germany.
- Industry
- Non-profit Social & Emergency Services
- Address
- Landesgeschäftsstelle Saarland, Saarland, Germany
- Founded
- 1888
Attack summary
Severity: critical — ASB Saarland operates ambulance services, elderly care, and social/psychiatric services, meaning exfiltrated data almost certainly includes sensitive medical records, PII of vulnerable individuals (elderly, disabled, psychiatric patients, refugees, minors), and health-related data at scale — all regulated categories under GDPR. The organisation's own website publicly confirms the cyberattack, and the disclosure status is 'data_published'.Qilin claims to have attacked ASB Saarland, with the organisation's own public website confirming a cyberattack and referencing a related mail server technical incident. The leak post lists the victim under 'data_published' status, indicating exfiltration and publication of data, though no specific data volume or file count is stated for this victim in the truncated post.
Data the group says was taken
AI dossier — extracted from the leak post- Employee and personnel records
- Patient and care-recipient personal data
- Medical and health-related records
- Internal communications and email data
- Organisational and administrative documents
- Financial records
What the group claims
N/A
The leak post
captured from the group's siteQilin blog Sorting Created At Name Bluize Software Company url Zoom Info May 13, 2026 0 photos Learn More Mayer Law Firms & Legal Services Company url Zoom Info May 13, 2026 0 photos Learn More Spirit Medical Transport Ambulance Services Company url Zoom Info May 13, 2026 0 photos Learn More Domaine Des Tournels Manufacturing Company url May 13, 2026 0 photos Learn More Johnson Carter Architects Architecture, Engineering & Design Company url Zoom Info May 13, 2026 0 photos Learn More LTJ Industrial Services Industrial Machinery & Equipment Company url Zoom Info May 13, 2026 0 photos Learn More Brand X Hydrovac Services Civil Engineering Construction Company url Zoom Info May 13, 2026 0 photos Learn More John G Yphantides A Professional Law Law Firms & Legal Services Company url Zoom Info May 13, 2026 0 photos Learn More One Legal Law Firms & Legal Services Company url Zoom Info May 13, 2026 0 photos Learn More The Gravity Group Architecture, Engineering & Design Company url Zoom Info May 12, 2026 3 photos Learn More Mediapost Spain Advertising & Marketing Company url Zoom Info May 12, 2026 13 photos Learn More + 6 more AppDirect Software Company url Zoom Info May 11, 2026 0 photos …
Sources
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

