Ransomware victim disclosure
← All victimsLeadec
Claimed by Anubis · listed 6 hours ago
Status timeline
- ListedOct 7, 2026
- Data leakeddate unknown
At a glance
- Group
- Anubis
- Status
- Data leaked
- Country
- Germany
- Sector
- Manufacturing
- Listed on leak site
- Oct 7, 2026
About the victim
AI dossier — public-source company profileLeadec is a manufacturing and industrial services company. Limited public information is available; the company operates in the manufacturing sector in Germany.
- Industry
- Manufacturing & Industrial Services
Attack summary
Severity: high — Confirmed exfiltration of a large data volume (2.1 TB) with active extortion threat and stated intent to publish. The scale and threat of public disclosure of business-critical data elevates this to high severity, though specific data sensitivity is not detailed in the post.The anubis group claims to have exfiltrated 2.1 TB of company data and threatens to publish an investigative article and leak the data unless the company negotiates a resolution.
Data the group says was taken
AI dossier — extracted from the leak post- Business data (unspecified)
- Operational records
What the group claims
Will they allow this leak to happen?
The leak post
captured from the group's site2.1 TB of your most valuable data has been leaked. At this moment, it is in our possession, and we are finalizing an in-depth analysis and investigative article about your business. My team and I have just one question: “Are you really going to allow this to be published?” We propose resolving this matter in a businesslike manner. You can save your reputation and prevent this leak. Now it’s entirely up to you. We look forward to hearing from you via any of our contact methods: The clock is ticking. Keep an eye on the timer.
Sources
Source
Indexed 6 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

