Ransomware victim disclosure
← All victimsMARTÍ
listed as marti.do · Claimed by Lockbit5 · listed 2 months ago
Status timeline
- ListedApr 14, 2026
- Data leakeddate unknown
At a glance
- Group
- Lockbit5
- Status
- Data leaked
- Country
- Dominican Republic
- Listed on leak site
- Apr 14, 2026
About the victim
AI dossier — public-source company profileMARTÍ is a Dominican business conglomerate with over 60 years of experience, operating across the Dominican Republic. Its portfolio includes gas bottling/packaging plants (envasadoras de gas) and fuel service stations (estaciones de combustibles), with corporate offices located in the Piantini district of Santo Domingo. It is one of the country's established energy distribution groups.
- Industry
- Energy Distribution & Fuel Retail (Gas & Fuel Stations)
- Address
- Av. Winston Churchill esquina calle Rafael Augusto Sánchez, Piantini, Santo Domingo, República Dominicana
Attack summary
Severity: high — Data is marked as published (exfiltrated and released) by a known ransomware group against a multi-sector energy conglomerate operating critical fuel infrastructure in the Dominican Republic. The combination of confirmed data publication and critical-infrastructure relevance warrants a high severity rating; insufficient detail on regulated PII at scale prevents escalation to critical.LockBit 5 claims to have compromised MARTÍ, with the disclosure status recorded as data_published, indicating exfiltrated data has been or is being released. No specific ransom amount or data volume was stated in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Corporate business data
- Operational records
- Human resources / employee data
- Potentially financial and contractual documents
What the group claims
ABOUT THE GROUP Somos un grupo empresarial con más de 60 años de experiencia, sirviendo con entusia...
Sources
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

