RANSOMWARE VICTIMMANUFACTURING⚠ DUPLICATE CLAIM
Angstrom Automotive Group
angstrom-usa.com
pear📍 United States (US)📅 December 1, 2025
8
same group
Attack Intelligence
Angstrom Automotive Group was compromised in a ransomware attack attributed to pear in December 2025. The organization, operating in the Manufacturing sector in United States, was added to the group's data leak site as part of an extortion campaign.
pear operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
Leading tier 1 full-service supplier for Automotive and Industrial OEMs
Additional Details
Status
announced
Revenue
$500M
Activity
Automotive Parts
Other Victims — pear (8)
Sonitor Technologies
US · Healthcare
Jul 2026
Metropolitan Construction Systems
US · Manufacturing
Jul 2026
South Plains Rural Health Services, Inc.
US · Healthcare
Jul 2026
Carient Heart & Vascular
US · Healthcare
Jul 2026
Faro Products Inc.
CA · Manufacturing
Jul 2026
Tostrud & Temp, S.C.
US · Business Services
Jul 2026
CNW Electronics Pte Ltd
SG · Manufacturing
Jul 2026
AC Beverage, Inc.
US · Agriculture and Food Production
Jun 2026
Quick Facts
CountryUnited States (US)
SectorManufacturing
Attack DateDec 1, 2025
Domainangstrom-usa.com
Intel Sourceransomware.live
StatusDUPLICATE CLAIM
Threat Group
External Links
Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.