Ransomware victim disclosure
← All victimsAEI Consultants
listed as aeiconsultants.com · Claimed by BrainCipher · listed 4 days ago
Status timeline
- ListedAug 31, 2026
- Data leakeddate unknown
At a glance
- Group
- BrainCipher
- Status
- Data leaked
- Country
- United States
- Sector
- Professional Services
- Listed on leak site
- Aug 31, 2026
About the victim
AI dossier — public-source company profileAEI Consultants is a professional services firm operating under the domain aeiconsultants.com. Beyond the domain, limited public information is available about the company's specific operations, location, or scale.
- Industry
- Management Consulting
Attack summary
Severity: high — Confirmed exfiltration of significant data volume (55 GB, 35k files) including personal data, internal security/HR records, trade secrets, and pricing information. No proof files are advertised in the post, but the scale and sensitivity of claimed data categories elevate this to high severity.BrainCipher claims to have exfiltrated approximately 35,000 documents totaling over 55 GB from AEI Consultants. The group states the data includes personal data, real estate information, internal security and HR records, infrastructure details, trade secrets, and pricing information.
Data the group says was taken
AI dossier — extracted from the leak post- Personal Data
- Real Estate Data
- Internal Security/HR Records
- Infrastructure Information
- Trade Secrets
- Pricing Information
Original description
AI-summarised, not from the leak postN/A
The leak post
captured from the group's siteWe have about 35,000(35k) documents and files of your company, with a total size of over 55 GB. The data includes: Personal Data, Real Estate Data, Internal Security/HR, Infrastructure, as well as trade secrets and pricing information. If you think you are here by mistake, please contact us at [email protected] ⏳ Deadline: September 12, 2026 at 13:00
Sources
Source
Indexed 4 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

