Ransomware victim disclosure
← All victimsTK HOLDINGS GROUP
Claimed by radar · listed 7 months ago
Status timeline
- Listed
Oct 18, 2025
- Data leaked
At a glance
About the victim
AI dossier — public-source company profileTK Holdings Group Limited is a holding company led by Alexandre Tanko (PDG) with a liaison bureau supporting subsidiary operations in the Democratic Republic of the Congo. Its subsidiaries include TK Timber Congo S.A.S.U. (timber), Translog Africa S.A.S.U. (logistics/transport), Congo Mineral Resources Company S.A.S., and Congo Mineral Exploration Company S.A.S., indicating activities across timber, mineral extraction, and logistics sectors in the DRC.
- Industry
- Natural Resources, Timber & Mineral Services (DRC)
- Address
- Democratic Republic of the Congo (liaison office); registered operations in DRC
Attack summary
Severity: medium — Data has been published by the group, indicating confirmed exfiltration, but the disclosed content appears limited to corporate/organizational information with no explicit evidence of large-scale PII, financial, or regulated data at this stage.The Radar ransomware group claims to have compromised TK Holdings Group and has published data (disclosed status: data_published). The leak post references LinkedIn profile and corporate structure details; no explicit ransom amount or data volume was stated.
Data the group says was taken
AI dossier — extracted from the leak post- Corporate organizational structure
- Executive/leadership identity information (PDG LinkedIn profile)
- Subsidiary company details
- Business operational data
What the group claims
https://www.linkedin.com/in/altanko - Alexandre TANKO - Président Directeur Général TK HOLDINGS GROUP Limited. Bureau de liaison chargé des activités de support des entreprises du groupe implantées en République Démocratique du Congo. - TK TIMBER CONGO S.A.S.U. - TRANSLOG AFRICA S.A.S.U. - CONGO MINERAL RESOURCES COMPANY S.A.S. - CONGO MINERAL EXPLORATION COMPANY S.A.S.
Sources
- Victim sitecongomineralservices.com
Source
Indexed 7 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
