DisclosureLens
GLOBALMalwareManufacturingManufacturingRansomwareCiphbitRansom DemandedActor NamedMedium

TermoPlastic S.R.L

bd_18f54a4c89cb254b · schema v1 · pii pii-v1

Severity

Medium

Discovered

Filed

Apr 6, 2024

To disclose

Affected

Not disclosed

Confidence

50%
Full breach record for TermoPlastic S.R.L

Threat-actor claim — not a regulatory filing

This row is a claim by the ransomware group Ciphbit on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.

Group activity: ManufacturingDiscovered: 2024-04-06

Source: Ransomware.live

Post text · scraped from the leak site

Termoplastic is a company that designs and manufactures plastic and cartoplastic articles. Its products include envelopes and pockets, cases, exhibitors, folders, name badges, key rings, and more. The company also offers design, engineering, installation, delivery, prototyping, and fittings services. Termoplastic caters to automotive, communication, pharmaceutical, telephony, and other sectors. Since the year 1951, we have been dedicated to the design and production of plastic items. Over the course of 70 years of activity, we have expanded our research and innovation sector, paying particular attention to the evolution of materials. At the moment, we are a solidly structured company, capable of managing each project in all its phases: customer consultancy, creation of the prototype and creation of the finished product, with a focus on cost optimization without neglecting creativity and functionality. Over time, we have collaborated with the most prestigious Italian companies, who have appreciated our finished product and our ability to combine quality and costs

Incident timeline — mostly unverified

? — ?

Breach window unknown

Apr 6, 2024

Claim posted

No filing yet · watching

Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.

Claim → filing

Compliance clock

Not assessable

Tracked as a single-filing incident — the only disclosure on record for this event so far.Unverified claimView incident

Evidence ladder

Leak-site claimThis record

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filing

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.

No regulatory filing corroborates this yet — it is the attacker's own assertion. Watch this entity to be notified the moment a filing corroborates or contradicts it.

Source ceiling

  • actor name
  • victim claim
  • ransom/leak status
  • discovery date
  • materiality
  • notification
  • affected count
  • confirmed data types
  • compliance clock

The ✕ fields stay blank until a regulatory filing or victim disclosure lands.

About this groupFirst seen 2023-09-14

ciphbit

According to ransomware.live, CiphBit is a ransomware-as-a-service group active since April 2023, targeting small-to-mid-sized businesses across the UK, Europe, and North America with 38 known victims, employing a data-broker model with selective free leaks to pressure victims alongside standard double extortion.

36 victims claimed globally36 tracked hereFull profile →