Ransomware victim disclosure
← All victimsoceaneering.com
Claimed by Blackbasta · listed 2 years ago
Status timeline
- ListedMar 20, 2024
- Data leakeddate unknown
At a glance
- Group
- Blackbasta
- Status
- Data leaked
- Country
- United States
- Sector
- Transportation/Logistics
- Listed on leak site
- Mar 20, 2024
About the victim
AI dossier — public-source company profileOceaneering International, Inc. is an engineered products and services company serving the offshore energy industry, with additional capabilities in defense, aerospace, renewable energy, material handling, and logistics. Headquartered in Houston, Texas, the company provides subsea, ROV, diving, and asset integrity management services.
- Industry
- Offshore Energy Services & Engineering
- Address
- 5875 N. Sam Houston Pkwy. W. Suite 400, Houston, Texas 77086, USA
Attack summary
Severity: critical — Confirmed exfiltration of ~300GB including financial data, engineering drawings (potentially sensitive for offshore/defense operations), and employee personal information. Scale and sensitivity of engineering/financial data to a critical infrastructure-adjacent company warrants critical rating.BlackBasta claims to have exfiltrated approximately 300GB of company data including financial records, engineering drawings, user personal folders, and confidential agreements. The group has published the data.
Data the group says was taken
AI dossier — extracted from the leak post- Financial data
- Engineering drawings & CAD files
- User personal folders & documents
- Confidential agreements
- Company operational data
What the group claims
Oceaneering provide engineered services and products primarily to the offshore energy industry. Today, we also use applied technology expertise to serve the defense, entertainment, material handling, aerospace, science, and renewable energy industries.SITE: www.oceaneering.com Address : Oceaneering International, Inc. 5875 N. Sam Houston Pkwy. W. Suite 400. Houston, Texas, 77086 USAALL DATA SIZE: ~300gb 1. Company data files, financial data 2. Drawings & Engeneering 3. Users personal folders and docs 4. Confidential agrements, dwg files & etc…
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

