ZESA Holdings
bd_f1166a7f1141671c · schema v1 · pii pii-v1
Full breach record for ZESA Holdings →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Everest on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Today, the servers of the entire infrastructure of ZESA HOLDINGS (90% Country Electricity Manufacture ) were attacked, including divisionsZETDCZENTPowertelICS, IPMP, Smartvend ,various oracle servers, big part of backups were also attacked.Terabytes of internal (and interesting) data has been exfiltrated to our servers Internal financial data (Including WorldBank’s data and Indian Bank transactions and documents) Various [...]
Source provenance
- Source URL
- https://www.ransomware.live/id/WkVTQSBIb2xkaW5nc0BldmVyZXN0
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 8, 2023
- Raw hash
- 5922b00c1d2489c9bdc71ef715d0c83cef1cb84468c8437c337fd926e308a475
Reporting entity
- Name
- everest
Victim entity
- Name
- ZESA Holdingsnorm: zesa holdings
- Industry
- Energy & Utilitiesllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· everest
- Threat actor
- EverestExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.