Ransom! ros.eu

The ransomware attack was claimed by the threat actor incransom targeting ros.eu in Germany, a manufacturing company specializing in conveying technology systems with 25 employees and $6.6 million in revenue. The attack involved significant data exfiltration (450GB), impacting their operations and highlighting vulnerabilities despite their technical expertise and established trust in the industry.

Incident Details

  • Victim: ros.eu
  • Country: DE
  • Actor: incransom
  • Source: http://incblog6qu4y4mm4zvw5nrmue6qbwtgjsxpw6b7ixzssu36tsajldoad.onion/blog/disclosures/6827639fba68908013e81090
  • Discovered: 2025-05-16 16:47:44.165261
  • Published: 2025-05-16 09:10:00.000000

Information

  • Ransomware attack targeted ros.eu in Germany by the actor incransom.
  • Specialist and leading provider of idler rollers, motor rollers, expansion elements, and accessories for conveying technology systems.
  • Company revenue is approximately $6.6 million.
  • Employs about 25 staff members.
  • Operates within the manufacturing industry.
  • Approximately 450GB of data was involved in the breach.
  • Contact phone numbers include +49 964280200, +49 9642 80 154, +49 9642 80 245, +49 9642 80 258, +49 9642 80 263, +49 9642 80 265, +49 9642 80 161, +49 9642 80 163, +49 9642 80 139, +49 9642 80 240, +49 9642 80 162.
  • Trust information available at https://www.zoominfo.com/c/iem-fo%CC%88rdertechnik-gmbh/406145742.
  • Company website: www.iem.eu.
  • Additional revenue figure noted: $6.1 million.
  • Company operates in the architecture, engineering, and design sector.

Disclaimer: This post is based on public claims made by the ransomware group "incransom". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live