Ransomware victim disclosure
← All victimsOfficeworks Inc
Claimed by Karakurt · listed 3 years ago
Status timeline
- Listed
Apr 6, 2023
- Data leaked
At a glance
- Group
- Karakurt
- Status
- Data leaked
- Country
- United States
- Sector
- Financial Services
- Listed on leak site
- Apr 6, 2023
About the victim
AI dossier — public-source company profileOfficeworks Inc is a US-based company whose name suggests involvement in office products, workplace supplies, or related services. No public website content was available to confirm specific operations, scale, or headquarters location. The sector listed as Financial Services may reflect the nature of the exfiltrated data rather than the company's primary industry.
- Industry
- Office Products & Workplace Solutions
Attack summary
Severity: critical — Confirmed exfiltration and publication of regulated PII at scale including government identity documents (birth certificates, driver's licenses), financial records, tax data, and insurance information affecting employees, meeting the threshold for critical severity.Karakurt claims to have exfiltrated data from Officeworks Inc including employee personal information (addresses, birth certificates, driver's licenses), accounting and finance records, tax and insurance data, project and property information, and internal HR documentation including incidents and penalties. No encryption or ransom amount is mentioned; the disclosure status indicates data has been published.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personally identifiable information (PII)
- Home addresses
- Birth certificates
- Driver's licenses
- Accounting and finance records
- Tax data
- Insurance data
- Project information
- Property information
- Internal incident records
- Penalty records
- HR documentation
What the group claims
Officeworks Inc, has shared with us some of their employees with addresses, birth certificates, drivers licenses and others. Also we have a pretty detailed accounting, finance information, tax and insurance data. Project and property information along with their internal incidents, penalties and other HR stuff are a bonus.Much to check. You are welcome!
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
