Ransomware victim disclosure
← All victimsNicholas & Tangeman
Claimed by Akira · listed 3 months ago
Status timeline
- ListedMar 4, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Listed on leak site
- Mar 4, 2026
- Data size
- 100 GB
About the victim
AI dossier — public-source company profileNicholas & Tangeman, LLC is a general practice law firm based in Laramie, Wyoming, serving clients across Wyoming and Colorado. The firm provides a broad range of legal services including civil litigation, criminal law, personal injury, estate planning, and corporate business planning.
- Industry
- Legal Services — General Practice Law Firm
- Address
- Laramie, Wyoming, United States
Attack summary
Severity: critical — The exfiltration claim covers over 100 GB of highly sensitive regulated data including PII (passports, driver's licenses), medical records, and privileged legal documents (court files, NDAs, police reports) belonging to third-party clients at scale, meeting the threshold for critical severity.Akira claims to have exfiltrated over 100 GB of data from Nicholas & Tangeman, LLC, including clients' personal identification documents, medical records, NDAs, police reports, and court files, with publication of the data described as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Client passports
- Driver's licenses
- Medical records
- Non-disclosure agreements (NDAs)
- Police reports
- Court files
- Confidential client files
What the group claims
Nicholas & Tangeman, LLC is a general practice law firm based in Laramie, Wyoming, serving clients in Wyoming and Colorado. The fi rm offers a wide range of legal services including civil litigati on, criminal law, personal injury, estate planning, and corporate business planning. We will upload over 100gb of corporate data soon. Lots of clients ' personal files (passports, DLs, medical record), NDA, police re ports, court files, and other confidential files.
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

