Ransomware victim disclosure
← All victimsGiaroli S.A.S
Claimed by Nightspire · listed 3 months ago
Status timeline
- ListedMar 12, 2026
- Data leakeddate unknown
At a glance
- Group
- Nightspire
- Status
- Data leaked
- Country
- Italy
- Listed on leak site
- Mar 12, 2026
About the victim
AI dossier — public-source company profileGiaroli S.A.S (operating as Passepartout Yachting) is an Italian yacht dealer and broker founded in 1981, headquartered in Orbetello (Grosseto), Italy. The company specialises in the sale and brokerage of new and pre-owned luxury yachts from prestigious brands such as Grand Banks, Hinckley, and Sabre, operating across Italy, France, and Europe. Over 40 years of activity it has sold more than 250 units and maintains a curated mailing list of approximately 4,000 potential buyers; it also operates affiliated entities in Singapore and Switzerland.
- Industry
- Yacht & Luxury Boat Sales and Brokerage
- Address
- 13 Corso Italia, 58015 Orbetello (GR), Italy; Box 5, 58018 Marina Cala Galera (GR), Italy
- Employees
- 1-10
- Founded
- 1981
Attack summary
Severity: medium — Data is listed as published by the group, suggesting exfiltration occurred, but the leak post provides no detail on data types, volume, or sensitivity. The company is a small luxury-yacht brokerage whose data likely includes client PII, financial transactions, and correspondence, but no confirmed regulated-data exposure is verifiable from available evidence.The Nightspire ransomware group claims to have compromised Giaroli S.A.S and lists the incident as data_published, indicating exfiltration and publication of company data; no further detail on data types or volume is available from the truncated leak post.
Data the group says was taken
AI dossier — extracted from the leak post- Unknown — leak post content not available
What the group claims
Data is not available now.
Sources
- Victim sitegiaroli.it
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

