Ransomware victim disclosure
← All victimsIcat Food SpA
Claimed by Akira · listed 4 months ago
Status timeline
- ListedFeb 16, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileIcat Food SpA is a historic Italian company with over a century of experience in the seafood industry. The company produces innovative seafood products that blend national and local culinary traditions. It operates with a Sustainable Sourcing Policy aligned with the FAO Code of Conduct for Responsible Fisheries.
- Industry
- Seafood Processing & Distribution
Attack summary
Severity: high — Confirmed exfiltration of 12 GB of data including regulated PII (passports, driving licences) and sensitive business data (financials, customer records); data publication is stated as imminent, indicating a credible and significant disclosure risk.The Akira ransomware group claims to have exfiltrated approximately 12 GB of corporate data from Icat Food SpA, including employee personal identity documents (passports, driving licences), financial records, customer information, and project files, with publication of the data described as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee passports
- Employee driving licences
- Employee personal information
- Financial records
- Customer information
- Project files
What the group claims
Icat Food is a Historic Italian Company with over a century of ex perience in the seafood industry, known for its innovative produc ts that blend national and local traditions. The company emphasiz es sustainability by implementing a Sustainable Sourcing Policy a ligned with the FAO Code of Conduct for Responsible Fisheries. We will upload almost 12gb of corporate data soon. Employee infor mation (passports, DLs and other personal information), financial s, customers information, projects, etc.
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

