Barracuda Claims Encryption and 1.5 TB Data Theft at Pakistan’s Abtach Ltd.

· Original article ↗

Summary

A ransomware.live post attributes claims to the Barracuda ransomware group that it encrypted Abtach Ltd.’s ESXi virtual machines, snapshots, and employee computer files, and exfiltrated 1.5 TB of data. The group reportedly offered documents and bank records for sale for $100,000. The post says the claims are unverified; Abtach was later renamed Intersys Ltd.

Key points

  • The ransomware.live post identifies Abtach Ltd., later renamed Intersys Ltd., as the target in Pakistan.
  • The post attributes to the Barracuda group claims that it encrypted ESXi virtual machines and snapshots, as well as employee computer files.
  • The group reportedly claimed to have exfiltrated 1.5 TB of data, including documents and bank records tied to founder Azneem Bilwani.
  • The stolen material was reportedly offered for sale for $100,000; this is a sale price, not a stated ransom demand.
  • The post alleges fraud targeting the US market and illicit synthetic opioid and fentanyl analogue trafficking via eWorldTrade; these claims are not independently confirmed.
  • The source says its information is based on public claims by the ransomware group and cannot confirm their accuracy.

Tags

RansomwareData EncryptionData ExfiltrationData SaleUnverified Claim

Indicators of compromise

TypeIndicatorContext
URLhxxp[:]//uvm6hk4wwstfddja5z5htgtlehmfyflffijz6iozsuqyacyibzxefkqd[.]onion/leaksListed as the source for the ransomware group’s leak claims.

Threat Actors

Products

Countries

Related Articles