Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Campaigns aurora: Evosys Laser GmbH

aurora: Evosys Laser GmbH

TLP:CLEAR
Inactive

AI Analysis

No AI analysis yet.

Description

Ransomware attack attributed to aurora. | Country: DE | Sector: Manufacturing | Website: Evosys Laser GmbH | [manufacturer] Evosys Laser GmbH — an Erlangen-based industrial laser welding systems manufacturer with ~130 employees, subsidiaries in the US, China, and a string of Tier 1 automotive customers. The dataset is the complete corporate repository, spanning every business function: 130 employees' complete HR files — employment contracts, salary histories, bank IBANs, tax IDs, social insurance numbers, pension records, medical examinations, disciplinary warnings, and two confirmed minors' health records. <censored> <censored> Complete server infrastructure map via mRemoteNG XML — 7 servers named, domain admin credentials, internal IPs. The Citrix admin password is Password1. 326 GB of customer project data — laser welding process parameters, CAD files, robot control software, and the award-winning AQW process know-how. Complete financial history — Jahresabschlüsse (2015–2025), P&L...

Details

Confidence
80%
First Seen
Jul 30, 2026
Last Seen
Jul 30, 2026
Added
Jul 30, 2026
No notes yet. Click "Add Note" to create the first analysis note.
No opinions yet. Be the first to assess this intelligence.
Leaving Threaticon

This link opens an external site that isn't part of the platform.