Ransomware victim disclosure
← All victimsFi-Tech, Inc.
listed as fi-tech.com · Claimed by Threeam · listed 3 years ago
Status timeline
- ListedSep 22, 2023
- Data leakeddate unknown
At a glance
- Group
- Threeam
- Status
- Data leaked
- Country
- United States
- Sector
- Technology
- Listed on leak site
- Sep 22, 2023
About the victim
AI dossier — public-source company profileFi-Tech, Inc. is a Virginia-based (area code 804) industrial machinery distributor that serves as a sales representative and connector to primarily European manufacturers of complete machines and technical components for the Polymer, Synthetic Fibers, Nonwovens, Textiles, Converting, Perforated Products, and Tobacco Processing industries. The company covers the NAFTA region and also maintains a spare parts inventory for the manufacturers it represents.
- Industry
- Industrial Machinery & Equipment Distribution (Textiles, Nonwovens, Synthetic Fibers)
Attack summary
Severity: high — Data has been published (confirmed exfiltration and disclosure), meaning proprietary business data, customer/supplier records, and potentially financial/contractual information are now exposed. While no regulated PII at mass scale is explicitly confirmed, the published-data status elevates this beyond medium.The Threeam ransomware group claims an attack on Fi-Tech, Inc. with a disclosed status of 'data_published', indicating exfiltrated data has been released. No specific data categories, file count, or ransom demand were stated in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Business communications and correspondence
- Customer and supplier records
- Sales and commercial data
- Internal company documents
What the group claims
Fi-Tech is “your global connection” to the leading manufacturers of complete machines or technical components used in the production of Polymer, Synthetic Fibers, Nonwovens, Textiles, Converting, Perforated Products or in Tobacco Processing. ...
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

