RANSOMWARE VICTIMDUPLICATE CLAIM

OSAC Aero

lapsus$📍 France (FR)📅 March 1, 2026
8
same group

Attack Intelligence

OSAC Aero was compromised in a ransomware attack attributed to lapsus$ in March 2026. The organization, operating in an undisclosed sector in France, was added to the group's data leak site as part of an extortion campaign.

lapsus$ operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

[AI generated] "OSAC Aero" is a Spanish aeronautical engineering company. They provide aeronautical consulting services, product development, aircraft maintenance, and also focus on designing, prototyping, and manufacturing aerostructures. Their innovative solutions have established OSAC as a reliable partner for leading global aerospace organizations.

Additional Details

Other Victims — lapsus$ (8)

Quick Facts

CountryFrance (FR)
Attack DateMar 1, 2026
Intel Sourceransomware.live
StatusDUPLICATE CLAIM

Threat Group

lapsus$
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.