Ransomware victim disclosure
← All victimsSecuritas Group
Claimed by Everest · listed 5 hours ago
Status timeline
- ListedSep 25, 2026
- Data leakeddate unknown
At a glance
- Group
- Everest
- Status
- Data leaked
- Country
- Sweden
- Sector
- Professional Services
- Listed on leak site
- Sep 25, 2026
About the victim
AI dossier — public-source company profileSecuritas Group is a Swedish multinational security services company founded in 1934 and headquartered in Stockholm. It provides guarding services, electronic security, fire and safety solutions, corporate risk management, and remote monitoring to clients globally ranging from small businesses to large corporations and government agencies.
- Industry
- Security Services & Risk Management
- Address
- Stockholm, Sweden
- Founded
- 1934
Attack summary
Severity: medium — Data has been published by the group (disclosed status confirms this), but without details on data type, volume, or sensitivity, and without visible proof files in the truncated post, severity cannot be elevated to 'high' or 'critical'. A security services company handling client data warrants at least 'medium' due to potential operational and reputational impact.The Everest group claims to have conducted an attack on Securitas Group and published data from the breach. Specific details on the type of attack (encryption, exfiltration, or both) and the nature of exfiltrated data are not provided in the available leak post.
Original description
AI-summarised, not from the leak postSecuritas Group is a Swedish multinational security services company headquartered in Stockholm, Sweden. It operates in the security industry, providing guarding services, electronic security, fire and safety solutions, corporate risk management, and remote monitoring. Founded in 1934, it operates globally across dozens of countries, serving clients ranging from small businesses to large corporations, government agencies, and critical infrastructure providers.
Sources
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

