HELMA Eigenheimbau AG
bd_f602d3c2c15dc314 · schema v1 · pii pii-v1
Full breach record for HELMA Eigenheimbau AG →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group BlackSuit (formerly Royal) on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
HELMA Eigenheimbau AGHeadquarters: 4 Zum Meersefeld, Lehrte, Lower Saxony, 31275, GermanyPhone Number: +49 49513288500Website: www.helma.deRevenue: $352MStock Symbol: H5EHELMA Eigenheimbau AG is a Germany-based company that specializes in design and construction of new private residential buildings and houses. The Company diversifies its activities into three business segments: building services business; property development business, and Other. The main area of operations of the building services business encompasses the planning and construction management of detached and semi-detached houses on the basis of customer orders. In the property development business, constructions are realized and marketed on the Company's own land. The Other business segment comprises the broking business for building-related financing and insurance. As of December 31, 2011, the Company had three wholly-owned subsidiaries: Hausbau Finanz GmbH, HELMA LUX SA, and HELMA Ferienimmobilien GmbH. It also held a 93.95-stake in HELMA Wohnungsbau GmbH.
Source provenance
- Source URL
- https://www.ransomware.live/
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 27, 2022
- Raw hash
- ba3d646aca59e7bdb7ef93cd49b54c281f962fad1a83ca83e8ad59635a06b6d7
Reporting entity
- Name
- royalnorm: blacksuit
Victim entity
- Name
- HELMA Eigenheimbau AGnorm: helma eigenheimbau
- Domain
- helma.de
- Industry
- Construction
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· blacksuit
- Threat actor
- BlackSuitExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.