GLOBALMalwareRansomwareLamashtuRansom DemandedActor NamedData Leak ThreatenedData PublishedHigh
Saharuang
bd_b6661e81b05d8895 · schema v1 · pii pii-v1
Full breach record for Saharuang →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Lamashtu on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Group activity: Not FoundDiscovered: 2026-05-12
Source: Ransomware.live
Post text · scraped from the leak site
Company operates a large-scale sugar mill and refinery in the Saraburi province, producing various types of sugar for both domestic and export markets.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Unverified claimView incident
No regulatory filing corroborates this yet. If an SEC 8-K, state-AG notice, or victim statement lands, DisclosureLens will merge it into an incident and link it here.
Source provenance
- Source URL
- https://www.ransomware.live/id/U2FoYXJ1YW5nQGxhbWFzaHR1
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 12, 2026
- Raw hash
- 6ed1ab43b0bcfde6c0ef2e99a035e530145c1c4a4fc0cce3899c4822f260074f
Reporting entity
- Name
- lamashtu
Victim entity
- Name
- Saharuangnorm: saharuang
- Domain
- saharuang.com
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· lamashtu
- Threat actor
- LamashtuExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.