Ransomware victim disclosure
← All victimsWestiform Germany
Claimed by Akira · listed 4 months ago
Status timeline
- ListedFeb 24, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileWestiform Germany is a manufacturer specialising in corporate design products and innovative technical plastics solutions. The company operates in Germany and serves clients requiring custom branding and engineering plastics applications. No further detail on scale or headquarters is available from the leak post or a public site.
- Industry
- Corporate Design & Technical Plastics Manufacturing
Attack summary
Severity: high — 150 GB of confirmed exfiltrated data includes employee PII, financial information, and confidential business agreements at significant scale; data has been flagged for imminent publication, indicating a serious and material breach of sensitive corporate and personal information.Akira claims to have exfiltrated approximately 150 GB of corporate data from Westiform Germany, including employee personal documents, project specifications, financial records, confidential agreements, and NDAs, with publication described as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal documents
- Project specifications
- Financial records
- Confidential agreements
- NDAs
What the group claims
Westiform Germany produces and create corporate design products a nd innovative technical plastics solutions. We will upload 150gb of corporate data soon. Employees' personal documents, specifications, projects, financials, confidential agr eements, NDAs, etc.
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

