In an incransom ransomware attack targeting the Rohloff Group franchise partner in ZA, KFC became associated with the incident and threatened data exposure. The 536 GB leak comprised 103,196 files across 30,805 folders, including employees’ personal and banking details, IDs, loan applications, debt acknowledgement, disciplinary hearing results, and financial documentation related to royalties and food cost reconciliation, placing confidential data at risk, with full publication forthcoming. #SouthAfrica
Incident Details
- Victim: Rohloff Group
- Sector: Manufacturing
- Country: ZA
- Actor: incransom
- Source: http://incblog6qu4y4mm4zvw5nrmue6qbwtgjsxpw6b7ixzssu36tsajldoad.onion/blog/disclosures/6a9045299cd108bf26c2734d
- Discovered: 2026-08-27T14:31:07.634510+00:00
- Published: 2026-08-27T01:00:00+00:00
Information
- Rohloff Group franchise partner in South Africa
- Total leak: 536 GB, 103,196 files, and 30,805 folders
- Exposed employee personal information, loan applications, banking details, IDs, and bank account statements
- Included employee acknowledgements of debt and disciplinary hearing results
- Also contained financial documentation for royalties, food cost reconciliation, and other sensitive records
- Data classified as confidential
- Full publication coming soon

Disclaimer: This post is based on public claims made by the ransomware group "incransom". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.