Ransomware victim disclosure
← All victimsBULOG
Claimed by Ransomexx · listed 3 years ago
Status timeline
- Listed
Feb 22, 2023
- Data leaked
At a glance
- Group
- Ransomexx
- Status
- Data leaked
- Country
- Indonesia
- Sector
- Food & Agriculture
- Listed on leak site
- Feb 22, 2023
About the victim
AI dossier — public-source company profileBULOG (Perum Bulog) is an Indonesian state-owned enterprise responsible for managing national food logistics, including the procurement, storage, and distribution of staple commodities such as rice, sugar, and cooking oil. It operates across all provinces of Indonesia and plays a central role in national food security policy. The company operates under the supervision of the Indonesian government and manages extensive warehouse and distribution infrastructure nationwide.
- Industry
- State-owned Food Logistics & Distribution
- Address
- Jalan Gatot Subroto Kav. 49, Jakarta Selatan 12950, Indonesia
- Employees
- 1001-5000
- Founded
- 1969
Attack summary
Severity: high — BULOG is a critical state-owned enterprise central to Indonesia's national food security infrastructure. Confirmed data publication by the threat actor indicates successful exfiltration of potentially sensitive government-linked operational and business data, with significant implications for national supply chain security and public sector data integrity.RansomExx claims to have attacked BULOG and has published data, indicating confirmed exfiltration of company data; the leak post status is marked as data_published, though the specific volume of exfiltrated data was not stated in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Internal company documents
- Food logistics operational data
- State enterprise records
- Potentially employee/personnel data
- Potentially procurement and supply chain records
What the group claims
BULOG adalah perusahaan umum milik negara yang bergerak di bidang logistik pangan.
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
