Ransomware victim disclosure
← All victimsLayher Chile / Layher del Pacífico S.A.
listed as Layher · Claimed by Thegentlemen · listed 18 hours ago
Status timeline
- ListedAug 23, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- Chile
- Sector
- Manufacturing
- Listed on leak site
- Aug 23, 2026
About the victim
AI dossier — public-source company profileLayher Chile is the local branch of the German manufacturer Layher, specializing in scaffolding and access systems. The company supplies high-quality scaffolding solutions, safety equipment, and event structures to the construction, industrial, mining, and infrastructure sectors across Chile, with offices in Santiago, Antofagasta, Copiapó, and Concepción.
- Industry
- Scaffolding & Access Systems Manufacturing
- Address
- Volcán Láscar #791, Parque Industrial Lo Boza, Pudahuel, Santiago, Chile
Attack summary
Severity: low — Disclosure status is marked as 'data_published' but the leak post excerpt contains no evidence of proof files, screenshots, or specific data inventory. No operational impact or confirmed exfiltration details are stated.The threat actor claims to have targeted Layher Chile. No specific details are provided in the available leak post excerpt regarding what data was exfiltrated or encrypted, or what operational systems were compromised.
What the group claims
layher.cl zoominfo.com/c/layher-del-pacífico-sa--layher-chile/1319092699 Layher Chile is the local branch of the globally renowned German manufacturer specializing in scaffolding and access systems. They supply high-quality scaffolding solutions, safety equipment, and event structures for the construction, industrial, and infrastructure sectors. The company provides comprehensive services, including product sales, equipment rentals, custom engineering design, and technical support for complex projects across the country.
Sources
- Victim sitelayher.cl
Source
Indexed 18 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

