Ransomware victim disclosure
← All victimsKing Mongkut's Ship Supply and Service Agency
listed as kmssa.net · Claimed by Warlock · listed 9 months ago
Status timeline
- ListedSep 16, 2025
- Data leakeddate unknown
At a glance
- Group
- Warlock
- Status
- Data leaked
- Country
- Saudi Arabia
- Listed on leak site
- Sep 16, 2025
About the victim
AI dossier — public-source company profilekmssa.net appears to be associated with a ship supply and service organization, likely operating in the maritime sector. Based on the domain and available context, the entity may be involved in provisioning, logistics, or technical services for vessels. No public site content was available to confirm exact operations or scale.
- Industry
- Marine / Ship Supply & Services
Attack summary
Severity: medium — Data is listed as 'published' with a claim of 'all data' exfiltrated, but no specific sensitive data categories (PII, financial, medical) are identified, no data size is given, and proof files are not enumerated, limiting severity assessment to medium.The Warlock ransomware group claims to have published all data from the victim, indicating exfiltration and/or full data disclosure. No specific data categories or ransom amount were stated in the post.
Data the group says was taken
AI dossier — extracted from the leak post- All company data (unspecified)
What the group claims
all data
Sources
- Victim sitekmssa.net
Source
Indexed 9 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

