Ransomware victim disclosure
← All victimsToncan Digital
listed as toncandigital.com · Claimed by Lockbit5 · listed 3 months ago
Status timeline
- ListedMar 30, 2026
- Data leakeddate unknown
At a glance
- Group
- Lockbit5
- Status
- Data leaked
- Country
- United States
- Sector
- Technology
- Listed on leak site
- Mar 30, 2026
About the victim
AI dossier — public-source company profileToncan Digital (Corporación Toncan Digital) is a Venezuelan company based in Caracas that provides document management services, equipment leasing, and digitalization solutions. The company offers laser and multifunction printers for office, event, and short-term project use, with national coverage across Venezuela.
- Industry
- Document Management & Managed Print Services
- Address
- Conjunto Residencial Yutaje – Local 10, Av. Sucre de Los Dos Caminos, Caracas, Venezuela
Attack summary
Severity: medium — Data has been published by the group (data_published status) indicating confirmed disclosure, but no data size, regulated/sensitive data categories, or operational impact details were provided, limiting severity assessment to medium.LockBit 5 claims to have attacked Toncan Digital and has published data (disclosed status: data_published), though the leak post provides no explicit description of encryption or exfiltration scope, and no ransom amount or data size was stated.
Data the group says was taken
AI dossier — extracted from the leak post- Potentially internal business documents
- Potentially client/contract records
What the group claims
Obtenga impresión confiable y rápida para las tareas diarias de oficina con nuestra gama de impres...
Sources
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

