RANSOMWARE VICTIMDUPLICATE CLAIM

CSA SpA

akira📍 Italy (IT)📅 April 14, 2026
8
same group

Attack Intelligence

CSA SpA was compromised in a ransomware attack attributed to akira in April 2026. The organization, operating in an undisclosed sector in Italy, was added to the group's data leak site as part of an extortion campaign.

akira operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

CSA S.p.A. is a company that provides a broad range of quality pr oducts and services tailored to the shipping industry, emphasizin g safety and customer satisfaction. Their offerings include ship services, liner agency, and logistics, all designed to meet the h ighest international standards. We will upload 10gb of corporate data soon. Personal data of empl oyees, financials, contracts and agreements, client files, and a lot of other internal files.

Additional Details

Other Victims — akira (8)

Quick Facts

CountryItaly (IT)
Attack DateApr 14, 2026
Intel Sourceransomware.live
StatusDUPLICATE CLAIM

Threat Group

akira
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.