Ransomware victim disclosure
← All victimsElectrolux
listed as Electrolux 2... · Claimed by Emperador · listed 22 hours ago
Status timeline
- ListedSep 28, 2026
- Data leakeddate unknown
At a glance
- Group
- Emperador
- Status
- Data leaked
- Country
- Sweden
- Sector
- Manufacturing
- Listed on leak site
- Sep 28, 2026
About the victim
AI dossier — public-source company profileElectrolux is a Swedish multinational manufacturer of home appliances and consumer electronics, including refrigerators, washing machines, and other household products. The company operates globally with significant manufacturing and commercial presence.
- Industry
- Home Appliances & Consumer Electronics Manufacturing
Attack summary
Severity: medium — Threat of data exfiltration from a large manufacturing company with potential access to operational, employee, or customer data; however, no proof files have been published yet and data categories are not specified. The threat is credible given the named victim and group activity, but lack of disclosed proof or confirmed data types prevents higher classification.The grupo emperador claims to have accessed Electrolux systems and threatens to leak data if ransom demands are not met within 3 days. No specific data categories or operational disruption have been detailed in the available post excerpt.
What the group claims
Hi Electrolux, im getting kind of inpatient, therefore i might just leak something. If i hear nothing from you in the next 3 days, more data WILL be leaked. Thanks. Emails: [email protected] Session: 05651c7323273b723588d47455471ee9e27feb5187a30f2933554a705aacb38358 [Sector: Retail, Manufacturing, Transportation]
The leak post
captured from the group's siteHi Electrolux, im getting kind of inpatient, therefore i might just leak something. If i hear nothing from you in the next 3 days, more data WILL be leaked.
Sources
Source
Indexed 22 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

