Ransomware victim disclosure
← All victimsPharmathek
Claimed by Akira · listed 2 months ago
Status timeline
- ListedApr 17, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- Germany
- Sector
- Healthcare
- Listed on leak site
- Apr 17, 2026
About the victim
AI dossier — public-source company profilePharmathek specializes in the development, production, and installation of automated warehouses and robotic systems designed specifically for pharmacies. The company offers innovative automation technologies, including the third-generation SINTESI robot, which features customizable interfaces and smartphone connectivity to enhance pharmacy operations. Based in Germany (DE), the company serves pharmacy clients across its market.
- Industry
- Pharmacy Automation & Robotics
Attack summary
Severity: high — The group claims exfiltration of PII (passports, contacts) for both clients and employees alongside sensitive business data (NDAs, financials, project files). Passport-level identity data constitutes regulated personal data under GDPR; however, the data has not yet been confirmed as fully published and scale is unquantified, stopping short of critical.Akira claims to have exfiltrated corporate data from Pharmathek and states it will be published imminently; the data allegedly includes personal data of clients and employees (passports, contact information), financial records, client data, project files, and NDAs.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal data (passports, contacts)
- Client personal data (passports, contacts)
- Financial records
- Client data
- Project files
- NDAs
What the group claims
Pharmathek specializes in the development, production, and instal lation of automated warehouses and robots specifically designed f or pharmacies. The company offers innovative technologies, includ ing the third-generation SINTESI robot, which enhances performanc e and user experience with customizable interfaces and smartphone connectivity. We will upload corporate data soon. Personal data of clients and employees (passports, contacts and so on), financials, client dat a, projects, NDAs, etc.
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

