Ransomware victim disclosure
← All victimsFlecha Bus
Claimed by Coinbasecartel · listed 1 day ago
Status timeline
- ListedAug 22, 2026
- Data leakeddate unknown
At a glance
- Group
- Coinbasecartel
- Status
- Data leaked
- Country
- Argentina
- Sector
- Transportation
- Listed on leak site
- Aug 22, 2026
About the victim
AI dossier — public-source company profileFlecha Bus is an Argentine intercity bus operator offering domestic and international passenger transportation services. They provide online ticket booking, group bus rentals, cargo services (encomiendas), and real-time GPS tracking via mobile app.
- Industry
- Transportation & Passenger Bus Services
Attack summary
Severity: low — No proof files, screenshots, or specific data disclosure have been published; only a listing announcement with no operational impact stated.The coinbasecartel group claims to have compromised Flecha Bus but has not yet disclosed any specific information about the attack method (encryption, exfiltration, or both) or data categories at stake.
Original description
AI-summarised, not from the leak postFlecha Bus is an Argentine intercity bus company operating in the passenger transportation industry. Founded in the mid-20th century, it provides long-distance coach services connecting Buenos Aires with various provinces across Argentina. Known for offering multiple service categories including standard and premium seating options, Flecha Bus is one of the prominent operators in Argentina's extensive national road transport network.
The leak post
captured from the group's siteTransportation, Freight & Logistics Services No disclosed information available yet.
Sources
Source
Indexed 1 day agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

