Ransomware victim disclosure
← All victimsEntrans International LLC
listed as entransinternational.com · Claimed by Chaos · listed 3 months ago
Status timeline
- ListedMay 28, 2026
- Data leakeddate unknown
At a glance
- Group
- Chaos
- Status
- Data leaked
- Country
- United States
- Sector
- Business Services
- Listed on leak site
- May 28, 2026
About the victim
AI dossier — public-source company profileEntrans International LLC is a business services company operating under the domain entransinternational.com. Limited public information is available; the company appears to operate in the logistics or supply chain sector based on naming conventions.
- Industry
- Business Services & Logistics
Attack summary
Severity: medium — Confirmed exfiltration threat with publication timeline announced, but no proof files published yet, data type/sensitivity unspecified, and no ransom demand stated. Status listed as 'pending publication' suggests threat is active but not yet fully materialized.The Chaos ransomware group claims to have exfiltrated internal data from Entrans International and threatened publication within 72 hours after claiming failed negotiation attempts with management.
Data the group says was taken
AI dossier — extracted from the leak post- internal data (unspecified)
What the group claims
STATUS: PENDING PUBLICATION | TIME REMAINING: 72 HOURS ENTITY: Entrans International (entransinternational.com) THE REALITY OF ENTRANS INTERNATIONAL We have been in possession of your internal data for some time. Throughout this period, we have attempted to engage with your management, but their si…
Screenshot of the leak post

Sources
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

