COSMO GROUP
bd_09a77ffc3b7dff72 · schema v1 · pii pii-v1
Full breach record for COSMO GROUP →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Thegentlemen on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
cosmo.co.th zoominfo.com/c/cosmo-group-public-co/459326707 Cosmo Group PCL, founded in 1964 and headquartered in Bangkok (Sukhumvit), is a Thai luxury packaging manufacturer with over 60 years of experience. The company specializes in premium gift boxes, displays, watch dials, cases, and accessories for global luxury brands in jewelry, watches, cosmetics, and perfume. With 1,000–5,000 employees and a Swiss sales office (Cosmo Pusterla 1880), Cosmo serves top-tier international clients and holds multiple quality and sustainability certifications
Source provenance
- Source URL
- https://www.ransomware.live/id/Q29zbW8gR3JvdXBAdGhlZ2VudGxlbWVu
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 26, 2026
- Raw hash
- 60159777ed42d4c2516c8f67f59b7a6150412af0e3730c7cccda127326d335b4
Reporting entity
- Name
- thegentlemen
Victim entity
- Name
- COSMO GROUPnorm: cosmo group
- Domain
- cosmo.co.th
- Industry
- Manufacturingllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· thegentlemen
- Threat actor
- ThegentlemenExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.