Adriatic Port Authority
bd_d9ef256c0ed584cd · schema v1 · pii pii-v1
Full breach record for Adriatic Port Authority →Press / market disclosure — not a breach-notification filing
A media or market posting that confirms an incident but carries no breach-notification fields, so compliance clocks aren't assessable. The summary below is extracted from the coverage and machine-translated to English — verify against the source.
Summary
machine-translatedCyberattack on the AdSp of Ancona - Messaggero Marittimo. Adriatic Port Authority: The Central Adriatic Sea Port System Authority was the victim of a cyberattack on December 11, 2025, but only 2% of the information was compromised. The entity took measures to protect the data and notified the competent authorities. The AdSp's activities continued normally despite the attack. It was claimed on January 14, 2026, by Anubis. Linked ransomware group: anubis.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Dec 11, 2025
Press report
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Attack → press
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Siteanubisbd_a6fa0a0382b4461a2026-01-14 · +34dCandidate
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- incident type + narrative only (may be machine-translated)
- discovery date
- materiality
- affected count
- data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
anubis
According to ransomware.live, Anubis is a ransomware-as-a-service group active since December 2024 that targets healthcare, engineering, construction, and professional services sectors, offering affiliates a flexible revenue split model and an optional destructive "wipe mode" alongside standard encryption.