Ransomware victim disclosure
← All victimsFrancare Industries
listed as www.francare.com · Claimed by ZaWoo · listed 7 hours ago
Status timeline
- ListedSep 24, 2026
- Data leakeddate unknown
At a glance
- Group
- ZaWoo
- Status
- Data leaked
- Country
- France
- Sector
- Healthcare
- Listed on leak site
- Sep 24, 2026
About the victim
AI dossier — public-source company profileFrancare Industries is a French multinational technical-supply, engineering, and maintenance company founded in 1988 and headquartered in Paris. The company supplies equipment, technologies, and technical services to industrial and healthcare customers, with 11 international locations, 380 active clients, and 3,350 suppliers and manufacturers in its network.
- Industry
- Industrial & Medical Equipment Supply, Engineering & Maintenance Services
- Address
- Paris, France
- Employees
- 101-500
- Founded
- 1988
Attack summary
Severity: medium — Data has been published by the ransomware group (disclosed status: data_published), indicating confirmed exfiltration, but the leak post provides no details on data type, volume, or sensitivity. The target is a B2B industrial/medical supplier rather than a direct holder of large-scale PII or regulated personal data, limiting severity to medium absent further specifics.ZaWoo claims to have attacked Francare Industries and published data. The leak post does not specify whether data was exfiltrated, encrypted, or both, nor does it detail what specific data categories are at stake.
What the group claims
FRANCARE Industries is a French international technical-supply, engineering, and maintenance company, headquartered in Paris, France. The company was founded in 1988 and specializes in supplying equipment, technologies, and technical services to industrial and healthcare customers internationally
Sources
Source
Indexed 7 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

