Ransomware victim disclosure
← All victimsGrupo Moelco
listed as moelco.es · Claimed by Global · listed 1 year ago
Status timeline
- ListedJul 25, 2025
- Data leakeddate unknown
At a glance
- Group
- Global
- Status
- Data leaked
- Country
- Spain
- Sector
- Manufacturing
- Listed on leak site
- Jul 25, 2025
About the victim
AI dossier — public-source company profileGrupo Moelco is a Spanish industrial group founded in 1988 specializing in vacuum cooling systems and control automation for the agri-food sector. Operating through two subsidiary companies (Moelco Técnicas Aplicadas SL and Moelco Levante SL), they provide manufacturing, installation, rental, and maintenance services for equipment designed to extend the freshness and shelf life of perishable produce.
- Industry
- Industrial Equipment & Vacuum Cooling Systems
- Founded
- 1988
Attack summary
Severity: medium — Data has been published (disclosed_status: data_published), indicating confirmed exfiltration, but the leak post does not specify sensitive categories (PII at scale, financial, medical) or provide visible proof counts. The victim is a B2B industrial equipment company rather than a custodian of large regulated datasets, limiting severity to medium.The threat actor claims to have compromised Grupo Moelco's systems. The leak post indicates data exfiltration with the company's information published, though specific details on the nature or scope of exfiltrated data are not provided in the post excerpt.
Data the group says was taken
AI dossier — extracted from the leak post- Company operational data
- Business records
What the group claims
A Spanish industrial group focused on vacuum cooling systems for the agri-food sector, offering manufacturing, rental, and maintenance services to extend the freshness and shelf life of perishable produce.
Sources
- Victim sitemoelco.es
Source
Indexed 1 year agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

