Ransomware victim disclosure
← All victimsERS Transporte e Logística
listed as erstransportes.com.br · Claimed by lockbit5 · listed 25 days ago
Status timeline
- Listed
Apr 26, 2026
- Data leaked
At a glance
- Group
- lockbit5
- Status
- Data leaked
- Country
- BR
- Sector
- Transportation/Logistics
- Listed on leak site
- Apr 26, 2026
About the victim
AI dossier — public-source company profileERS Transporte e Logística is a Brazilian transport and logistics company founded in 2003, headquartered in Paranaguá with operations in São José dos Pinhais. The company provides national and international freight transport (including controlled and non-controlled chemical cargo, containers, and general goods), warehousing across 9,000 m² of infrastructure, and customs/port terminal services at major Brazilian ports and airports.
- Industry
- Freight Transport & Logistics
- Address
- Rua Professor Cleto, 1650, Paranaguá, Brasil; Rua Célia Teresinha Bassa, 1770, São José dos Pinhais, Brasil
- Founded
- 2003
Attack summary
Severity: high — Data has been published (confirmed exfiltration), and the company handles regulated cargo including controlled chemicals and customs/trade documentation, which elevates the sensitivity of the exposed data.LockBit 5 claims to have attacked ERS Transporte e Logística, with the disclosure status listed as data_published, indicating that exfiltrated data has been released or made available. The leak post references company operational details, suggesting exfiltration of internal business data.
Data the group says was taken
AI dossier — extracted from the leak post- Company operational records
- Freight and logistics documents
- Customs and import/export records
- Internal business data
What the group claims
A ERS Transportes, iniciou suas atividades em 2003, transportando cargas em equipamentos porta contê...
Sources
Source
Indexed 25 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
