GB Group targeted by cyberattack
- Blaise Arbouet

- Jun 25, 2025
- 1 min read
Haitian conglomerate GB Group (https://gbgroup.com), a pillar of the Haitian economy, was the victim of a massive cyberattack claimed by the ransomware group Dire Wolf. The attackers published 20 GB of confidential data on their dark web site, including strategic, accounting, and HR documents.
š Ā Data Leak timeline:
šļøĀ May 26, 2025: Sample files released
šļøĀ June 15, 2025: Partial leak
šļøĀ June 30, 2025: Full disclosure planned
Ā
šĀ Examples of exposed files (from screenshots and recovered files): SQL Server files + Excel/Word/PDF accounting exports
šĀ Investment tracking tables
šĀ Internal audit reports
š§¾Ā Bank statements and payroll documents
šļøĀ Files on subsidiary management, governance, and financial risk management
šĀ IT compliance files
šĀ Compromised data:
šøĀ SQL Server databases
šøĀ Internal contracts & organizational charts
šøĀ Financial statements and Audits
Ā Ā Ā Ā Ā Ā Ā Ā Ā šøBanking data (XLSX, DOC, PDF files)
šøĀ Accounting spreadsheets and tenant lists
šøĀ Confidential Odoo and ERP documents
Ā
šµļøāāļøĀ The leak includes sensitive files related to Bin Faqeeh Real Estate Investment Company, account statements, lease agreements, customer credentials, and important financial files (e.g., Bank Accounts.xlsx, Tenant master format.xlsx, Breaker OS SC Tally Export.xlsx).
Ā
ā ļøĀ This attack confirms a worrying trend: ransomware groups are increasingly targeting regional conglomerates and critical infrastructure in the LAC region, including Haiti.
Ā
Source: Adama ASSSIONGBON, ThreatIntel Specialist




Comments