Ransomware victim disclosure
← All victimsDM Informatik
listed as dmschweiz.ch · Claimed by m3rx · listed 22 days ago
Status timeline
- Listed
Apr 29, 2026
- Data leaked
At a glance
- Group
- m3rx
- Status
- Data leaked
- Country
- CH
- Sector
- Business Services
- Listed on leak site
- Apr 29, 2026
About the victim
AI dossier — public-source company profileDM Informatik is a Swiss IT service provider based in Belp, canton of Bern, operating since 1983. The company offers hardware sales, network setup, software support, virus protection, data recovery, and cloud services to private and business customers. It operates a physical service point and provides on-site and remote IT support.
- Industry
- IT Services & Support (SMB/Consumer)
- Address
- Dorfstrasse 2, 3123 Belp, Switzerland
- Founded
- 1983
Attack summary
Severity: high — Confirmed exfiltration of 120 GB / 100k files from an IT services provider that handles client networks, hardware, and sensitive IT environments; data has been published. As an MSP-type firm, client data exposure risk is significant, though no explicit PII or regulated data categories are confirmed.The m3rx group claims to have exfiltrated approximately 120 GB of data comprising around 100,000 files from DM Informatik, with the disclosure status marked as data_published, indicating the stolen data has been released.
Data the group says was taken
AI dossier — extracted from the leak post- 120 GB of exfiltrated files
- ~100,000 files (nature unspecified)
- Potentially customer IT environment data
- Potentially business/operational documents
What the group claims
Sie haben im Katalog unsere Angebote von installierten und betriebsbereiten Gerten. Die Installationen können nach Ihren Wünschen angepasst werden. DM Standard-Installation ist optimiert und ohne Herstellerwerbung. Stolen: 120gb 100k files
The leak post
captured from the group's siteIf you are interested in this data, please contact our support.Tox: 9A1217BEDA4AB77052A25D17CB6FFB34AFA2BE462E607F2FD8E1DF1DDD4CA16A64E18B1A0BF2
Sources
Source
Indexed 22 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
