Ransomware victim disclosure
← All victimsGrupo de Toni
listed as grupodetoni.com.br · Claimed by Lockbit5 · listed 2 days ago
Status timeline
- ListedJun 11, 2026
- Data leakeddate unknown
At a glance
- Group
- Lockbit5
- Status
- Data leaked
- Country
- Brazil
- Sector
- Business Services
- Listed on leak site
- Jun 11, 2026
About the victim
AI dossier — public-source company profileGrupo de Toni is a Brazilian agribusiness group engaged in sugarcane cultivation and production. The company operates in the agricultural sector focused on sugarcane processing and related activities.
- Industry
- Agribusiness & Sugarcane Production
Attack summary
Severity: medium — Data published status indicates exfiltration occurred, but no specific proof files, screenshots, or detailed inventory of sensitive data types are mentioned in the available excerpt. Agribusiness operational and commercial data exposure warrants medium classification without evidence of regulated PII or financial records at scale.LockBit5 claims to have compromised Grupo de Toni and exfiltrated data from the organization. The specific scope and nature of exfiltrated data are not detailed in the available post excerpt.
What the group claims
grupodetoni.com.br Brazilian agribusiness group engaged in sugarcane cultivation and the production...
Sources
Source
Indexed 2 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

