Ransomware victim disclosure
← All victimsRuhrpumpen
Claimed by Dark Project · listed 3 days ago
Status timeline
- ListedAug 5, 2026
- Data leakeddate unknown
At a glance
- Group
- Dark Project
- Status
- Data leaked
- Country
- Germany
- Sector
- Manufacturing
- Listed on leak site
- Aug 5, 2026
About the victim
AI dossier — public-source company profileRuhrpumpen is a global manufacturer of highly engineered centrifugal and reciprocating pumps serving oil & gas, power generation, chemical, water treatment, and mining sectors. The company operates multiple facilities and service centers with product lines spanning between-bearing pumps, overhung pumps, magnetic drive pumps, fire systems, and hydraulic decoking systems.
- Industry
- Industrial Pumps & Fluid Handling Equipment
Attack summary
Severity: high — Confirmed exfiltration of 1 TB of data including personal and financial information at a significant industrial manufacturer; no operational disruption claimed but data sensitivity and scale indicate high severity.Dark Project claims to have conducted a cyberattack on Ruhrpumpen's network resulting in exfiltration of approximately 1 TB of data, including confidential personal and financial information.
Data the group says was taken
AI dossier — extracted from the leak post- Personal information
- Financial records
- Internal business data
What the group claims
About Ruhrpumpen Ruhrpumpen is a leading global manufacturer of highly engineered centrifugal and reciprocating pumps. A sophisticated cyberattack in the company's network led to a massive data breach. As a result of the incident, approximately 1 TB of data was leaked, including confidential personal and financial information.
Sources
Source
Indexed 3 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

