Ransomware victim disclosure
← All victimsTTT Company (ttt.vn)
listed as ttt.vn UPDATE-FULL DATA DUMP · Claimed by stormous · listed 7 days ago
Status timeline
- Listed
May 13, 2026
- Data leaked
At a glance
About the victim
AI dossier — public-source company profileTTT Company, operating under the domain ttt.vn, is a Vietnamese interior design and architecture firm. The company works on high-profile projects including Toyota showrooms, gyms, luxury resorts, and government buildings. It produces detailed blueprints and CAD designs for prestigious clients across Vietnam.
- Industry
- Interior Design & Architecture
Attack summary
Severity: critical — Confirmed exfiltration of regulated PII at scale (passports, IDs, medical records), sensitive financial records, and security schematics for client buildings including government projects; 5 TB of data published.Stormous claims to have exfiltrated 5 TB of data from TTT Company's internal infrastructure, including CAD designs, employee personal documents, financial records, and building security schematics. The group is demanding $900,000 and has published the data dump.
Data the group says was taken
AI dossier — extracted from the leak post- Blueprints and CAD designs
- Employee IDs and passports
- Employee private medical records
- Confidential client contracts
- Tax reports (BCTC)
- Internal financial audits
- Building security schematics
- Personal employee drive contents
What the group claims
$900k to Solve the Problem 5TB — While TTT Company was preoccupied with designing luxurious interiors and architectural masterpieces, they completely overlooked the design of a secure network. We have spent enough time within their internal infrastructure to conclude that their security is incredibly fragile. We have successfully exfiltrated all of the company's data and now possess 5 TB of the most sensitive information, including complete blueprints and CAD designs for prestigious clients (Toyota showrooms, gyms, luxury resorts, and government projects). We have accessed every employee's personal drive, including IDs, passports, and private medical records. Furthermore, we hold confidential contracts, tax reports (BCTC), internal financial audits, and detailed security schematics for client buildings.
Source
Indexed 7 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
