Exel Composites Oyj
bd_4bf4fccb207e043a · schema v1 · pii pii-v1
Full breach record for Exel Composites Oyj →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Worldleaks on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Exel Composites is a global technology company that designs, manufactures and markets composite profiles and tubes. Founded in 1960, Exel operates in a variety of markets such as construction, transportation, and sporting goods. The company delivers high-quality, durable products that leverage the benefits of composite materials, including strength, lightness, durability, and conductivity. Headquartered in Finland, Exel has a worldwide presence.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Jun 27, 2025
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Indiana State AGbd_1dc6e0fb3c24ac8d2025-10-22 · +117dVerified by operator
Filing propagation · 2 filings
View merged incident ↗Pattern: first filing Jun 27, last Oct 22 (IN) — a 117-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
worldleaks
According to ransomware.live, World Leaks emerged in January 2025 as a rebrand of the Hunters International ransomware operation, shifting its focus from file encryption to solely stealing sensitive data and threatening to leak it unless a ransom is paid