Ransomware victim disclosure
← All victimsSerap
Claimed by Akira · listed 2 months ago
Status timeline
- ListedApr 2, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileSERAP is an independent, employee-majority-owned French company specialising in the manufacture of on-farm milk cooling equipment. It is described as the world's No. 1 manufacturer of on-farm milk coolers and holds the top market position in France and numerous other countries. The company operates across every continent with an ambitious international development strategy.
- Industry
- Agricultural Equipment Manufacturing (On-Farm Milk Coolers)
Attack summary
Severity: critical — Confirmed exfiltration of 50 GB of data encompassing PII at scale (employee personal data, HR files), financial and payment details, and extensive client contracts across 80+ countries, with data publication imminent — meeting the threshold for critical regulated/sensitive data disclosure.Akira claims to have exfiltrated approximately 50 GB of corporate data from SERAP, including employee personal information, HR files, client contracts spanning more than 80 countries, financial records, payment details, NDAs, and project documentation, with publication of the data stated as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal information
- HR files
- Client contracts (80+ countries)
- Financial records
- Payment details
- NDAs
- Detailed project files
What the group claims
SERAP is an independent company and opened up its capital to empl oyees on a voluntary basis. Today more than 90% of SERAP employee s are company shareholders. SERAP operates an ambitious developme nt strategy on every continent and is currently the 1st largest w orld manufacturer of on-farm milk coolers and No. 1 in France and many other countries. We will upload 50gb of corporate data soon. Employee personal inf ormation, HR files, client files (contracts with more than 80 cou ntries), financials, payment details, NDAs, detailed projects, et c.
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

