Daily Dark Web
  • Home
  • Data Breaches
  • Inside the Adversary
    • Dark Web Informants
  • DDW Top Lists
  • Ransomware News
  • DarkWeb News
    • Vulnerability
    • Cyber Attacks
  • Unauthorized Accesses
  • About Us
No Result
View All Result
  • Home
  • Data Breaches
  • Inside the Adversary
    • Dark Web Informants
  • DDW Top Lists
  • Ransomware News
  • DarkWeb News
    • Vulnerability
    • Cyber Attacks
  • Unauthorized Accesses
  • About Us
No Result
View All Result
Daily Dark Web
No Result
View All Result
Home Ransomware News

Sarcoma Ransomware Group Allegedly Breaches German Companies Pfullendorfer Tor-Systeme, KWG, F1-Generation, and IAD GmbH

September 17, 2025
Reading Time: 2 mins read
Sarcoma Ransomware Group Allegedly Breaches German Companies Pfullendorfer Tor-Systeme, KWG, F1-Generation, and IAD GmbH

The Sarcoma ransomware group has allegedly added four German companies to its data leak site, claiming to have exfiltrated a significant amount of data from their networks. The threat actor has listed Pfullendorfer Tor-Systeme, KWG mbH, F1-Generation GmbH, and IAD GmbH as its latest victims, threatening to release the stolen files. This series of alleged attacks targets a diverse set of industries within Germany, from manufacturing and real estate to fashion and IT services.

The victims represent various sectors of the German economy, highlighting the indiscriminate nature of ransomware attacks. The targeted organizations allegedly include:

  • 🇩🇪 Pfullendorfer Tor-Systeme: A manufacturer of garage door systems with over 70 years of history and more than 400,000 customers. The group claims to have stolen a 643 GB archive containing files and Exchange data.
  • 🇩🇪 KWG mbH: A modern housing service company managing residential and commercial properties in the Senftenberg region. A 989 GB archive containing files, SQL databases, and Exchange data was allegedly exfiltrated.
  • 🇩🇪 F1-Generation GmbH: A distributor for over 10 international fashion brands in the European market, managing lingerie, swimwear, and accessories. The breach allegedly involves a 520 GB archive of files and SQL data.
  • 🇩🇪 IAD GmbH: An IT service provider offering training, certification, and consulting, with test centers in several German cities. The attackers claim to possess a 43 GB archive with files, SQL databases, and Exchange data.

The publication of these companies on the ransomware group’s leak site serves as a pressure tactic to compel the victims into paying a ransom. If negotiations fail or no payment is made, the Sarcoma group will likely leak the stolen data publicly, posing a significant risk to the companies’ privacy, operations, and reputation. The variety in the size and type of data allegedly stolen indicates a comprehensive compromise of each company’s digital infrastructure.

Tags: cyberattackcybersecurity newsdata-breachF1-GenerationGermanyIAD GmbHKWGPfullendorfer Tor-SystemeransomwareSarcoma
ShareTweet

Related Posts

Qilin Ransomware: Inspira, Muller, A&A, Longwood, Exclusive, Istarpal
Ransomware News

Qilin Ransomware: Inspira, Muller, A&A, Longwood, Exclusive, Istarpal

April 27, 2026
Narteks Tekstil A.S. Suffers Krybit Ransomware Attack
Ransomware News

Narteks Tekstil A.S. Suffers Krybit Ransomware Attack

April 27, 2026
Synmosa Biopharma Hit by Dragonforce Ransomware Attack
Ransomware News

Synmosa Biopharma Hit by Dragonforce Ransomware Attack

April 27, 2026
K2 Electric Inc Targeted in Genesis Ransomware Attack
Ransomware News

K2 Electric Inc Targeted in Genesis Ransomware Attack

April 22, 2026
Rutan & Tucker Law Firm Suffers Data Breach by Silentransomgroup
Ransomware News

Rutan & Tucker Law Firm Suffers Data Breach by Silentransomgroup

April 22, 2026
Qilin Breach: Sea Air, Kolin, INDCAR, PTS, Huonker, Ferguson, SEL, Sterimed, Avitrans, Rusk
Ransomware News

Qilin Breach: Sea Air, Kolin, INDCAR, PTS, Huonker, Ferguson, SEL, Sterimed, Avitrans, Rusk

April 22, 2026
Next Post
Warlock Ransomware Allegedly Breaches Hitachi HTA, Medkar, ELS Surveying, Webville, SSA Group, Ferus Smit, and Chroma ATE

Warlock Ransomware Allegedly Breaches Hitachi HTA, Medkar, ELS Surveying, Webville, SSA Group, Ferus Smit, and Chroma ATE

Global Equipment Giant CNH Industrial Allegedly Breached by Ransomware Attack

Global Equipment Giant CNH Industrial Allegedly Breached by Ransomware Attack

Recommended Stories

Qilin Ransomware Allegedly Targets 11 International Organizations

Qilin Ransomware Allegedly Breaches Venture Credit Union, Haeger & Schmidt Logistics, Assisted Living Pharmacy, SYNCADD, Northern Construction, and Belle Vernon Schools

August 13, 2025
Exposed Admin Panel Allegedly Leads to Breach of 85,000 Records at Indian E-Learning Site

Exposed Admin Panel Allegedly Leads to Breach of 85,000 Records at Indian E-Learning Site

June 7, 2025
Delta.ru Data Breach: 429k User Records Allegedly Leaked Online

Delta.ru Data Breach: 429k User Records Allegedly Leaked Online

January 27, 2026

Popular Stories

  • SudamericaData Breach Exposes Over 1TB of Argentine Records

    SudamericaData Breach Exposes Over 1TB of Argentine Records

    0 shares
    Share 0 Tweet 0
  • Threat Actor Claims Sale of Dell Database Containing 49 Million Customer Records

    0 shares
    Share 0 Tweet 0
  • SUUMO, CHINTAI, At Home, HOME’S Suffer Data Breach

    0 shares
    Share 0 Tweet 0
  • Financial Tech Giant SilverLake Axis Allegedly Breached – 423GB of Data for Sale

    0 shares
    Share 0 Tweet 0
  • Telekom Serbia Investigates Leak of 160,000 Customer Records

    0 shares
    Share 0 Tweet 0
Daily Dark Web

Disclaimer: Daily Dark Web (DDW) is an independent media platform providing information, analysis, and reporting on cybersecurity, cyber incidents, and related digital developments. All content published on this website is for informational and journalistic purposes only. DDW does not support, endorse, or promote any illegal activities, threat actors, or organizations referenced in its content. Any statements, claims, or opinions expressed by third parties, including interview subjects, are their own and do not reflect the views of DDW. Such content may include unverified information and should be interpreted critically. DDW does not participate in, facilitate, or coordinate any activities discussed or referenced on this platform. Under no circumstances should any content be interpreted as encouragement, instruction, or endorsement of unlawful actions. All interactions and publications are conducted in the public interest to enhance awareness and understanding of the evolving cyber landscape.

No Result
View All Result
  • About Us
  • Home
  • Newsletter
  • Privacy Policy

Disclaimer: Daily Dark Web (DDW) is an independent media platform providing information, analysis, and reporting on cybersecurity, cyber incidents, and related digital developments. All content published on this website is for informational and journalistic purposes only. DDW does not support, endorse, or promote any illegal activities, threat actors, or organizations referenced in its content. Any statements, claims, or opinions expressed by third parties, including interview subjects, are their own and do not reflect the views of DDW. Such content may include unverified information and should be interpreted critically. DDW does not participate in, facilitate, or coordinate any activities discussed or referenced on this platform. Under no circumstances should any content be interpreted as encouragement, instruction, or endorsement of unlawful actions. All interactions and publications are conducted in the public interest to enhance awareness and understanding of the evolving cyber landscape.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?