Diacom Listed by avaddon Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
The Diacom Listed by avaddon Ransomware Group (reported September 9, 2021) is an unverified claim; the data involved is undisclosed belonging to roughly unknown people. If you have an account with them, your information may now be circulating on the open web and with data brokers. Here’s exactly what happened, how to check if you were affected, and what to do next.
The listing of Diacom on the Avaddon ransomware group's leak site on 9 September 2021 illustrates the continued use of data exfiltration alongside encryption in ransomware operations. Public records show only that the group claimed to have obtained internal files; the number of people affected and the precise contents of any exfiltrated material remain undisclosed.
Such incidents matter because they place operational records from private organisations into environments where they can be further distributed or used for secondary criminal activity, even when the original encryption demands are not met.
What happened
Diacom appeared on the Avaddon ransomware leak site on 9 September 2021. The only confirmed public detail is the listing itself. The group stated that internal files had been taken during a ransomware attack. No information has been released about the date of the intrusion, the volume of data involved, or whether any ransom was demanded or paid. The number of individuals whose information may be present in the files is not known.
The group behind it: avaddon
Avaddon operated as a ransomware-as-a-service affiliate model during 2020 and 2021. Its documented pattern involved encrypting victim systems and, in many cases, copying files for later publication if payment was not received. The group maintained a dedicated leak site to list organisations and, at times, to host samples of claimed data. Avaddon was among several strains that combined encryption with the threat of data release, a tactic that became widespread in that period. Public reporting on the group ceased after mid-2021 following infrastructure disruptions, though earlier activity established its methods clearly.
Diacom and its sector
Diacom is a private organisation whose internal records were listed by the group. Companies of this type routinely maintain operational documents, communications, and administrative files that support day-to-day functions. When such material is removed without authorisation, the immediate consequence is loss of control over information that may describe business processes, partners, or internal decisions. The exact nature of Diacom’s work is not detailed in public breach records, yet the exposure of any internal repository carries implications for confidentiality regardless of sector.
What was likely exposed
The only information released by the listing is that internal files were claimed to have been exfiltrated. No inventory of file types or data categories has been published. Organisations in comparable positions commonly store records that include employee details, contractual correspondence, technical documentation, and financial or planning material. The precise composition of the material associated with Diacom has not been confirmed.
- Internal operational files
- Any supporting administrative or communications records contained within those files
What's at stake
For individuals whose information appears in the files, the primary risks are further distribution of personal or professional details and potential use in follow-on fraud or targeted campaigns. For the organisation, the loss of exclusive control over internal documents can affect ongoing operations, partner relationships, and future security planning. Because the scale of the data remains unknown, the extent of these effects cannot be quantified from public sources.
Were you affected?
Individuals can begin by monitoring official statements from Diacom and by changing passwords for any accounts that may have been referenced in internal correspondence. Enabling multi-factor authentication on important services provides an immediate practical step. Readers may also run a free exposure scan of their email address against known breach data sets to determine whether their information has appeared in previously published collections.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
JetSJ Listed by avaddon Ransomware GroupSolvere LLC Listed by avaddon Ransomware GroupSL Corporation Listed by avaddon Ransomware GroupMEGAPOLIS HOLDINGS (OVERSEAS) LIMITED Listed by avaddon Ransomware GroupLatest breaches
Read GalaxyWarden’s full analysis of the Diacom Listed by avaddon Ransomware Group →
Publicly posted by avaddon — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.