Ransom! Gestordes (MAY-2026)

Ransom! Gestordes (MAY-2026)
spacebears allegedly deployed ransomware against Gestordes (ES), impacting victims with the theft and exposure of personal information (clients’ passports, IDs) and financial and other files (200,000+). The claim is tied to Gestordes’ administrative services website and states disruption in Spain. #Spain

Incident Details

  • Victim: Gestordes
  • Sector: Business Services
  • Country: ES
  • Actor: spacebears
  • Source: http://5butbkrljkaorg5maepuca25oma7eiwo6a2rlhvkblb4v6mf3ki2ovid.onion/companies/43/gestordes
  • Discovered: 2026-05-27T01:06:20.149338+00:00
  • Published: 2026-05-03T00:00:00+00:00

Information

  • At Gestordes Administrative Management, they provide top-quality administrative services in Ordes, A Coruña, with support across labor, tax, and accounting management.
  • The leaked data includes personal information such as client passports and ID documents.
  • Financial documents were also exposed.
  • Other files were among the compromised data, with more than 200,000 files affected.

Disclaimer: This post is based on public claims made by the ransomware group "spacebears". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live