RANSOMWARE VICTIMBUSINESS SERVICES⚠ DUPLICATE CLAIM
GEIGER
rhysida📍 Germany (DE)📅 October 17, 2025
8
same group
Attack Intelligence
GEIGER was compromised in a ransomware attack attributed to rhysida in October 2025. The organization, operating in the Business Services sector in Germany, was added to the group's data leak site as part of an extortion campaign.
rhysida operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
GEIGER GEIGER Antriebstechnik is a leading manufacturer of innovative mechanical and electric drive solutions for sun protection products such as blinds, awnings, and shutters, employing over 250 staff. More
Additional Details
Other Victims — rhysida (8)
SIA Medical Centre
LV · Healthcare
Aug 2026
Lawson Roofing
Construction
Jun 2026
IDS Group
US · Not Found
May 2026
Landeshauptstadt Stuttgart
DE · Public Sector
May 2026
Tower View Primary School
GB · Education
May 2026
Stelia North America
US · Manufacturing
Apr 2026
Southold Town Senior ServicesSouthold Police Department
Government
Mar 2026
Rohner
CH · Manufacturing
Feb 2026
Quick Facts
CountryGermany (DE)
SectorBusiness Services
Attack DateOct 17, 2025
Intel Sourceransomlook
StatusDUPLICATE CLAIM
Threat Group
External Links
Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.