Abel Schillinger Listed by anubis Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
Abel Schillinger was listed by the anubis ransomware group on February 08, 2026, after internal files were exfiltrated in a ransomware attack. An undisclosed number of people may be affected; anyone connected to the organisation should check for official notices and change any exposed credentials.
Inside the incident
The reported event centers on a listing placed by the anubis group on February 8, 2026. The group claims to have obtained internal files from Abel Schillinger through a ransomware operation. No official statements from the organization regarding the timing of the intrusion, the method of access, or the scale of exfiltration have been made public. The number of people whose information may be involved is also not disclosed.
Inside anubis
Anubis is a ransomware operation that has appeared in public reporting for encrypting victim systems and removing copies of data before demanding payment. Groups of this type commonly maintain leak sites where they list organizations and, in some cases, publish samples or full archives when negotiations fail. The listing of Abel Schillinger constitutes the group's claim; independent confirmation of the data's contents or the circumstances of its removal has not been provided in available records.
Who is Abel Schillinger?
Abel Schillinger operates as a patent law practice. Organizations in this sector routinely receive, draft, and store documents that describe inventions, technical specifications, and prosecution strategies on behalf of clients. These materials often include unpublished technical details that have commercial value prior to patent grant or while applications remain pending. A breach affecting such a firm therefore touches both the firm's own records and the intellectual-property interests of its clients across multiple industries.
What was likely exposed
The listing describes internal files exfiltrated in a ransomware attack, with explicit mention of drafts and intellectual property. No further inventory of file types, client names, or specific data fields has been released. Patent-law practices typically hold correspondence with patent offices, invention disclosures, prior-art searches, and draft applications; however, the exact contents removed in this case remain unconfirmed beyond the general description provided in the claim.
What's at stake
For individuals and organizations whose patent-related materials may be involved, exposure carries the possibility that technical or strategic information could circulate beyond intended recipients. This can affect ongoing or future patent filings, competitive positioning, and confidentiality obligations owed to clients. For the firm itself, the incident adds operational, legal, and reputational considerations common to any professional-services breach involving client data.
If your data was in this claimed breach
Individuals concerned about possible exposure should monitor official communications from Abel Schillinger and any notifications required under applicable data-protection rules. Practical first steps include changing passwords for any accounts linked to the firm, enabling multi-factor authentication, and reviewing recent account activity for unusual access. Readers can also run a free exposure scan of their email address against known breach data sets to check for appearances in previously published collections.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
Nachlass Nord Listed by anubis Ransomware GroupESMS Global Limited Listed by anubis Ransomware GroupFÉTIS Group & SECOM Engineering Listed by anubis Ransomware GroupA.R.Ge.Co Listed by anubis Ransomware GroupLatest breaches
Read GalaxyWarden’s full analysis of the Abel Schillinger Listed by anubis Ransomware Group →
Publicly posted by anubis — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.