Ransomware victim disclosure
← All victimsTrustar Holdings LLC / Vist Labs
listed as https://trustarholdingsllc.com/ https://vistlabs.com/ · Claimed by INC Ransom · listed 5 months ago
Status timeline
- ListedJan 15, 2026
- Data leakeddate unknown
At a glance
- Group
- INC Ransom
- Status
- Data leaked
- Country
- United States
- Listed on leak site
- Jan 15, 2026
- Data size
- 1.4 TB
About the victim
AI dossier — public-source company profileTrustar Holdings LLC (trustarholdingsllc.com) appears to be a holding company based in the United States. Vist Labs (vistlabs.com) is an associated entity, likely a technology or research and development subsidiary. Both entities are listed together as victims, suggesting they share common ownership or operations.
- Industry
- Holding Company & Technology/R&D Services
Attack summary
Severity: critical — 1.4 TB of data has been confirmed exfiltrated and published, encompassing financial records, investor files, confidential business documents, and development drawings — a broad dataset of regulated and highly sensitive business and financial information at significant scale.INC Ransom claims to have exfiltrated approximately 1.4 TB of data from the victim organisations, including development drawings, confidential files, investor files, financial transaction records, equipment records, and compliance/violation records. The disclosed status indicates the data has been published.
Data the group says was taken
AI dossier — extracted from the leak post- Development drawings
- Confidential files
- Investor company files
- Financial transaction records
- Equipment records
- Violations/compliance records
What the group claims
All company data, development drawings, confidential files, investor company files, all financial transactions, equipment, violations, 1.4 TB
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

