Ransomware victim disclosure
← All victimsUSHA International Limited
Claimed by vect · listed 3 months ago
Status timeline
- Listed
Mar 1, 2026
- Data leaked
At a glance
- Group
- vect
- Status
- Data leaked
- Country
- India
- Sector
- Manufacturing
- Listed on leak site
- Mar 1, 2026
About the victim
AI dossier — public-source company profileUsha International Limited is an Indian consumer goods manufacturer headquartered in Gurgaon, Haryana. The company produces and markets a broad range of home appliances and products including fans, cooking appliances, sewing machines, fabric care equipment, water coolers, room coolers, water heaters, room heaters, and automotive fans. It operates across India under the well-known 'Usha' brand.
- Industry
- Consumer Appliances & Home Products Manufacturing
- Address
- Plot No. 15, Institutional Area, Sector-32, Gurgaon, Haryana, PIN: 122001, India
Attack summary
Severity: high — The attackers claim exfiltration of SAP databases (likely containing financial, supply chain, and operational business data), CRM/CMS data, and employee PII, representing significant sensitive business and personal data exposure at scale for a large Indian manufacturing firm.The group 'vect' claims to have exfiltrated employee data along with CMS, CMR, and SAP database contents from Usha International Limited, with negotiations reportedly ongoing as of the disclosed deadline.
Data the group says was taken
AI dossier — extracted from the leak post- Employee data
- CMS database
- CMR database
- SAP database
What the group claims
Status: STATUS: NEGOTIATING | Sector: manufacturer | Employee Data, CMS, CMR, SAP databases. | Deadline: 19d 11h
Sources
- Victim siteusha.com
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
