Sawafi
bd_911ba9da56c9c70b · schema v1 · pii pii-v1
Full breach record for Sawafi →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Thegentlemen on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
sawafi.com zoominfo.com/c/sawafi-co/402330352 Sawafi is a Saudi Arabian company specializing in drilling, completions, and production services tailored to enhance oil and gas performance. With a commitment to innovation and sustainability, the company offers a variety of advanced technologies, including eco-friendly electric submersible pumps (ESP) and efficient drilling products. Targeting clients in the oil and gas sector, Sawafi is dedicated to supporting local value creation and self-sufficiency in line with national goals. The company also invests in strategic partnerships and acquisitions to bolster its service capabilities and market presence
Source provenance
- Source URL
- https://www.ransomware.live/id/U2F3YWZpQHRoZWdlbnRsZW1lbg==
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 21, 2026
- Raw hash
- 3c463bc6eb27b1ca49e271b411a6b3b7ec8d6181b9798271abf687cfef735450
Reporting entity
- Name
- thegentlemen
Victim entity
- Name
- Sawafinorm: sawafi
- Domain
- sawafi.com
- Industry
- Energy & Utilitiesllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· thegentlemen
- Threat actor
- ThegentlemenExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.