Ransomware victim disclosure
← All victimsESSPL
Claimed by Ransomhouse · listed 5 months ago
Status timeline
- Listed
Dec 29, 2025
- Data leaked
At a glance
- Group
- Ransomhouse
- Status
- Data leaked
- Country
- India
- Sector
- Technology
- Listed on leak site
- Dec 29, 2025
- Data size
- 743 GB
- Ransom demanded
- $740
About the victim
AI dossier — public-source company profileESSPL (Enterprise Software Solutions Pvt. Ltd.) is an India-based software development company founded in 1998 with over 27 years of experience. It specialises in supply chain and logistics software, including freight management, business intelligence, RPA, ERP, B2B integration, and managed services. The company serves clients globally across the supply chain, logistics, and manufacturing domains.
- Industry
- Supply Chain & Logistics Software Solutions
- Founded
- 1998
Attack summary
Severity: high — 743 GB of data has been exfiltrated and published by the threat actor from a software/technology company serving global logistics and supply chain clients; the scale of exfiltration and potential exposure of client data and proprietary software assets warrants a high severity rating, though the absence of confirmed regulated PII or medical/government data at scale prevents critical classification.RansomHouse claims to have exfiltrated approximately 743 GB of data from ESSPL and has published the disclosure; the post indicates data has been released rather than merely threatened.
Data the group says was taken
AI dossier — extracted from the leak post- Business data (743 GB exfiltrated)
- Potentially client and project records
- Potentially employee/HR data
- Potentially source code or IP
- Potentially financial records
What the group claims
ESSPL is a leading software solutions provider specializing in supply chain management and logistics, with over 27 years of experience. The company offers a comprehensive range of services including custom software development, consulting, business intelligence, and managed application services. ESSPL focuses on delivering innovative solutions that enhance operational efficiency and customer satisfaction for logistics and supply chain companies globally.
The leak post
captured from the group's site```
{"data":[{"id":"a1894b76b7004c75a3a0845799af49956592e3d9","display":"animated","header":"HOT NEWS","info":" Trellix is a global cybersecurity company.","url":"","sort":1,"views":"436242"},{"id":"336b257f582b17573c97578efd4b22762bf77344","sort":2,"header":"Trellix (McAfee & FireEye)","url":"https://www.trellix.com/","private":"false","revenue":"1.5-2 B$","employees":"5000","info":"Trellix is a global cybersecurity company formed from the October 2021 merger of McAfee Enterprise and FireEye. It provides services to over 50,000 business and government customers worldwide, protecting more than 200 million endpoints. The companys open and native extended detection and response (XDR) platform helps organizations confronted by todays most advanced threats gain confidence in the protection and resilience of their operations. Trellix, along with an extensive partner ecosystem, accelerates technology innovation through machine learning and automation to empower over 40,000 business and government customers with living security","statusDate":"DEPENDS ON YOU","status":"EVIDENCE","published":"NOT YET","action":"Encrypted","actionDate":"17/04/2026","volume":"~","content":"cybersecurity.html"…Sources
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
