Ransomware victim disclosure
← All victimsHEMERIA
Claimed by Snatch · listed 4 years ago
Status timeline
- ListedMay 22, 2022
- Data leakeddate unknown
At a glance
- Group
- Snatch
- Status
- Data leaked
- Country
- France
- Sector
- Engineering
- Listed on leak site
- May 22, 2022
About the victim
AI dossier — public-source company profileHEMERIA is a French company specialising in the design and manufacture of high-dependability, high-tech equipment and systems for the space industry and France's nuclear deterrence force. The company operates in highly regulated and sensitive defence and space sectors, supplying critical components and systems to demanding military and institutional clients. As a supplier to France's nuclear deterrence programme, HEMERIA handles classified and strategically sensitive programmes.
- Industry
- Aerospace, Space & Nuclear Defence Systems Manufacturing
- Employees
- 51-200
Attack summary
Severity: critical — HEMERIA is a direct supplier to France's nuclear deterrence force and the space industry. Confirmed data publication by Snatch implies exfiltration of potentially classified or highly sensitive defence and strategic programme data, representing a national security-level exposure and meeting the threshold for critical severity.The Snatch ransomware group claims to have attacked HEMERIA and has published data (disclosed status: data_published), indicating confirmed exfiltration of company data. The post highlights HEMERIA's role in space and nuclear deterrence systems, suggesting the stolen data may include sensitive technical and programme information.
Data the group says was taken
AI dossier — extracted from the leak post- Technical engineering documents
- Space systems design data
- Nuclear deterrence programme-related files
- Internal business records
What the group claims
At HEMERIA, we design and manufacture high-dependability, high-tech equipment and systems for the very exacting requirements of the space industry and France’s nuclear deterrence force.
Source
Indexed 4 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

