Ransomware victim disclosure
← All victimsFUNAP - Fundação Prof. Dr. Manoel Pedro Pimentel
listed as FUNAP - Fundação "Prof. Dr. Manoel Pedro Pimentel" · Claimed by Booba Project · listed 12 hours ago
Status timeline
- ListedOct 1, 2026
- Data leakeddate unknown
At a glance
- Group
- Booba Project
- Status
- Data leaked
- Country
- Brazil
- Sector
- Government & Defense
- Listed on leak site
- Oct 1, 2026
About the victim
AI dossier — public-source company profileFUNAP is a São Paulo state foundation (funap.sp.gov.br) operating under the state government. The organization appears to be involved in government administrative or penal services based on its name referencing Professor Dr. Manoel Pedro Pimentel, a notable Brazilian jurist.
- Industry
- Government & Justice Administration
Attack summary
Severity: high — Data exfiltration from a Brazilian state government foundation with 26 GB of files classified as 'Government Relations Services' indicates confirmed access to sensitive government administrative data. The scale and government nature elevate this beyond medium severity, though the vague data description and inaccessible public site prevent full assessment.Booba Project claims to have exfiltrated 26 GB of data from FUNAP's systems, described as 'Government Relations Services' data. The group has published the data; no ransom demand or encryption disruption is mentioned in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Government relations records
- Administrative files
What the group claims
Government Relations Services Stolen data: 26 GB.
Sources
- Victim sitefunap.sp.gov.br
Source
Indexed 12 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

