Ransomware victim disclosure
← All victimsComunidad Andina (CAN)
listed as comunidadandina.org · Claimed by Lockbit5 · listed 2 months ago
Status timeline
- ListedApr 14, 2026
- Data leakeddate unknown
At a glance
- Group
- Lockbit5
- Status
- Data leaked
- Country
- Peru
- Sector
- Public Sector
- Listed on leak site
- Apr 14, 2026
About the victim
AI dossier — public-source company profileLa Comunidad Andina (CAN) is an international subregional integration body headquartered in Lima, Peru, comprising Bolivia, Colombia, Ecuador, and Peru. It was founded on 26 May 1969 via the Cartagena Agreement and works to promote economic, social, and political integration among its member states. The organization administers trade policy, customs harmonization, and development programs across the Andean region.
- Industry
- Intergovernmental / Regional Integration Organization
- Address
- Av. Paseo de la República 3895, San Isidro, Lima, Peru
- Employees
- 200-500
- Founded
- 1969
Attack summary
Severity: high — The victim is an intergovernmental organization handling sensitive multilateral policy, diplomatic, and administrative data for four sovereign nations; confirmed data publication elevates this beyond a mere listing, and exposure of intergovernmental records carries significant geopolitical and regulatory sensitivity.LockBit 5 claims to have attacked Comunidad Andina and has published data, indicating exfiltration of organizational data; the disclosed status is 'data_published', suggesting files have been released on the group's leak site.
Data the group says was taken
AI dossier — extracted from the leak post- Organizational documents
- Internal communications
- Member state records
- Administrative files
- Personnel data
What the group claims
La Comunidad Andina (CAN) es un organismo internacional de integración subregional fundado el 26 de...
Sources
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

