DisclosureLens
GLOBALMalwareTransportation & LogisticsTransportationRansomwareBlack BastaRansom DemandedActor NamedMedium

UCH Logistics

bd_11fd22bfbdf97788 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Filed

Nov 1, 2023

To disclose

Affected

Not disclosed

Confidence

50%
Full breach record for UCH Logistics

Threat-actor claim — not a regulatory filing

This row is a claim by the ransomware group Black Basta on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.

Group activity: Transportation/LogisticsDiscovered: 2023-11-16

Source: Ransomware.live

Post text · scraped from the leak site

UCH Logistics is a dynamic, customer focused provider of specialist transport services to the airfreight industry. Having been established in this industry since the year 2000, we have built a reputation for offering reliable time-sensitive and next day deliveries, at competitive prices. As your transport provider, UCH recognise that we represent you to your customers and are pleased to offer a reliable and professional collection and delivery service that means you will not let your customers down. Using a modern and expanding vehicle fleet that’s fully supported by state of the art technology, we are able to serve destinations throughout the UK as well as mainland Europe. No job is too small or too large and our technology means you can track your consignments at any time of the day or night.SITE: www.uchlogistics.co.uk Address : *UCH Logistics Colnbrook Cargo Centre, * Old Bath Road, Colnbrook, SL3 0NW.ALL DATA SIZE: 895gb 1. Employee files 2. Accounts 3. Human Resources 4. Personal documents employees (passports and driver licenses) And etc

Incident timeline — mostly unverified

? — ?

Breach window unknown

Nov 1, 2023

Claim posted

No filing yet · watching

Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.

Claim → filing

Compliance clock

Not assessable

Tracked as a single-filing incident — the only disclosure on record for this event so far.Unverified claimView incident

Evidence ladder

Leak-site claimThis record

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filing

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.

No regulatory filing corroborates this yet — it is the attacker's own assertion. Watch this entity to be notified the moment a filing corroborates or contradicts it.

Source ceiling

  • actor name
  • victim claim
  • ransom/leak status
  • discovery date
  • materiality
  • notification
  • affected count
  • confirmed data types
  • compliance clock

The ✕ fields stay blank until a regulatory filing or victim disclosure lands.