The ransomware claim alleges that safepay targeted chemstress.com, a US-based company founded in 1965, which integrates various in-house disciplines such as process, mechanical, piping, structural, instrumentation, electrical, and architectural. The attack has impacted operations in the United States.
Incident Details
- Victim: chemstress.com
- Country: US
- Actor: safepay
- Source: http://safepaypfxntwixwjrlcscft433ggemlhgkkdupi2ynhtcmvdgubmoyd.onion/blog/post/chemstresscom/
- Discovered: 2025-12-09 08:49:10.030097
- Published: 2025-12-09 08:48:57.287057
Information
- Ransomware attack targeted a company established in 1965.
- The company integrates multiple in-house disciplines, including process, mechanical, piping, structural, instrumentation, electrical, and architectural.
- The ransomware actor responsible is safepay.

Disclaimer: This post is based on public claims made by the ransomware group "safepay". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.