Ransomware victim disclosure
← All victimsIngenieurbüro Laudi
Claimed by brotherhood · listed 6 months ago
Status timeline
- Listed
Nov 28, 2025
- Data leaked
At a glance
- Group
- brotherhood
- Status
- Data leaked
- Country
- Germany
- Sector
- Not Found
- Listed on leak site
- Nov 28, 2025
- Data size
- 4 GB
About the victim
AI dossier — public-source company profileIngenieurbüro Laudi is a German engineering consultancy specialising in technical building equipment (TGA), including HVAC, sanitary, sprinkler, electrical engineering, and building automation. The firm offers planning, construction supervision, quality assurance, and consulting services to building owners and developers. It operates from three offices in Essen (headquarters), Attendorn, and Soest in North Rhine-Westphalia.
- Industry
- Building Services Engineering (TGA / HVAC & Electrical Planning)
- Address
- Essen, North Rhine-Westphalia, Germany (main office); also Attendorn and Soest, Germany
- Employees
- 11-50
Attack summary
Severity: high — 143 GB total compressed data has been exfiltrated and partially published; the firm handles detailed building plans and client data that likely include sensitive project and business information at significant scale, constituting confirmed exfiltration of substantial business data.The 'brotherhood' ransomware group claims to have exfiltrated data from Ingenieurbüro Laudi, publishing 4 GB of compressed files freely and holding 139 GB of compressed files behind a paywall, indicating both exfiltration and likely encryption occurred.
Data the group says was taken
AI dossier — extracted from the leak post- Project planning documents
- Construction supervision records
- Client/building owner data
- Technical engineering files
- Internal business documents
What the group claims
Contains: 4 Gb Compressed Free Files, 139 Gb Compressed Paid Files
Sources
- Victim sitewww.ib-laudi.de
Source
Indexed 6 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
