assaabloy.com
bd_37121aab56b234a2 · schema v1 · pii pii-v1
Full breach record for assaabloy.com →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Cactus on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
<p>Business Services<br><br>“The Assa Abloy AB is the global leader in access solutions. The Group has leading positions in areas such as efficient door openings, trusted identities and entrance automation. ASSA ABLOY's innovations enable safe, secure and convenient access to physical and digital places.”<br><br>Website: <a href="https://www.assaabloy.com/">https://www.assaabloy.com/<\/a><br><br>Revenue : $14.4B<br><br>Address: 90 Klarabergsviadukten, Stockholm, Stockholm, 111 64, Sweden<br><br>Phone Number: +46 850648500<br><br><mark class="marker-yellow"><strong>Download link #1:<\/strong><\/mark> <a href="https://6wuivqgrv2g7brcwhjw5co3vligiqowpumzkcyebku7i2busrvlxnzid.onion/ASSAABLOY/PROOF/">https://6wuivqgrv2g7brcwhjw5co3vligiqowpumzkcyebku7i2busrvlxnzid.onion/ASSAABLOY/PROOF/<\/a><br><br><mark class="marker-yellow"><strong>Mirror:<\/strong><\/mark> <a href="https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/ASSAABLOY/PROOF/">https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/ASSAABLOY/PROOF/<\/a><br><br><mark class="marker-yellow"><strong>DATA DESCRIPTIONS:<\/strong><\/mark> <span style="background-color:rgb(16,19,23);color:rgb(235,238,242);font-family:Inter, Twemoji, "Apple Color Emoji", "Segoe UI Emoji", Arial, Helvetica, sans-serif, "Noto Color Emoji";">Confidential information on corporate business strategies and processes, agreements and contracts, personal identifiable information (passports, DL, contacts, home addresses, etc. of executive management and others), various internal confidential documents, audit documents, legal data, financials and payroll, corporate and personal sensitive correspondence, exports from databases, etc.<\/span><\/p><p><img src="/uploads/Erik_Pieder_new_passport_FULL_legalized_2384077b3a.png"><img src="/uploads/CONFIDENTIAL_MFP_10_July_2024_Submissions_DRAFT_f
Source provenance
- Source URL
- https://www.ransomware.live/id/YXNzYWFibG95LmNvbUBjYWN0dXM=
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 17, 2025
- Raw hash
- f9eded4add463ee662c8a6d5ce99a01c7211d3f8ea9df3e60eb4545d6cb92377
Reporting entity
- Name
- cactus
Victim entity
- Name
- assaabloy.comnorm: assaabloycom
- Domain
- assaabloy.com
- Industry
- Manufacturingllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· cactus
- Threat actor
- CactusExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.