Ransomware victim disclosure
← All victimsAlkegen
Claimed by Akira · listed 2 months ago
Status timeline
- ListedApr 23, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Sector
- Energy
- Listed on leak site
- Apr 23, 2026
About the victim
AI dossier — public-source company profileAlkegen is a United States-based manufacturer of high-performance specialty materials used in advanced applications such as electric vehicles, energy storage, filtration, fire protection, and high-temperature insulation. The company operates in technically demanding industrial and clean-energy sectors. It is a significant materials science enterprise with a broad range of industrial clients.
- Industry
- Advanced Specialty Materials Manufacturing
Attack summary
Severity: critical — The group claims exfiltration of regulated PII at scale (passports, medical information, addresses for employees and clients), combined with sensitive financial and contractual business data totalling 57 GB, with data publication imminent — meeting the threshold for critical severity.The Akira ransomware group claims to have exfiltrated approximately 57 GB of corporate data from Alkegen, including employee personal documents, client personal information, confidential business files, contracts, financials, and NDAs, with publication of the data stated as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee passports
- Employee driver's licenses
- Employee contact information and addresses
- Employee medical information
- Client personal information
- Confidential business files
- Project documentation
- Contracts and agreements
- Detailed financial records
- NDAs
What the group claims
Alkegen creates high performance specialty materials used in adva nced applications including electric vehicles, energy storage, fi ltration, fire protection and high-temperature insulation, among many others. We will upload 57gb of corporate data soon. Employee personal doc uments (passports, DLs, contacts, addresses, medical information and so on), client personal information, lots of confidential fil es, projects, contracts and agreements, detailed financials, NDAs , etc.
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

