gelatissimo.com.au Listed by dragonforce Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
gelatissimo.com.au has been listed by the dragonforce ransomware group, with internal files reported exfiltrated in the attack. The incident came to light on 27 April 2026; an undisclosed number of people may be affected, and anyone with an account or prior dealings with the site should check for notices and change credentials if advised.
Information about a possible data incident involving gelatissimo.com.au emerged on April 27, 2026, when the organisation appeared on a listing associated with the dragonforce ransomware group. The number of individuals potentially affected remains unknown.
The listing indicates that internal files were taken during a ransomware operation. For customers, employees, or business partners of the ice cream chain, this raises questions about what information may have been exposed and how it could be used.
What happened
The incident was reported on April 27, 2026. gelatissimo.com.au is listed by the dragonforce group, which claims that internal files were exfiltrated in a ransomware attack. The scale of the operation and the exact method used have not been disclosed publicly.
Inside dragonforce
Dragonforce is a ransomware group known for targeting organisations and publishing claims of data theft on leak sites when ransom demands are not met. The group typically operates by encrypting systems and threatening to release stolen data. It has been linked to multiple incidents in various sectors, though specific claims regarding any single victim require independent verification.
Who is gelatissimo.com.au?
gelatissimo.com.au operates an artisanal ice cream chain with a global presence. The brand has been actively seeking investors experienced in retail and franchising to support expansion through a master franchise program.
Organisations in the food retail and franchising sector routinely collect and store customer details, employee records, supplier information, and operational data.
What data was at risk
The available information states that internal files were exfiltrated. No further breakdown of the file contents has been provided, so the precise categories of data remain unconfirmed.
What's at stake
Exposure of internal files can lead to operational disruptions for the organisation and potential misuse of any sensitive business information. For individuals, risks depend on whether personal details were among the files, though this has not been specified.
Were you affected?
Individuals concerned about their information can monitor their accounts for unusual activity and consider changing passwords if they have accounts with the organisation. A free exposure scan of email addresses against known breach data is available through established services.
- Review any direct communications from gelatissimo.com.au regarding the incident
- Monitor financial and email accounts for signs of unauthorised access
- Use reputable breach-checking tools to scan your email address
- Enable multi-factor authentication on any related accounts
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
Corniche Hotel Abu Dhabi Listed by dragonforce Ransomware GroupHong Kong Parkview Listed by dragonforce Ransomware GroupTaos Mountain Casino Listed by dragonforce Ransomware GroupShoreline Sightseeing Listed by dragonforce Ransomware GroupLatest breaches
Read GalaxyWarden’s full analysis of the gelatissimo.com.au Listed by dragonforce Ransomware Group →
Publicly posted by dragonforce — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.