RANSOMWARE VICTIMMANUFACTURINGDUPLICATE CLAIM

CCL Products India

cclproducts.com
skira📍 India (IN)📅 March 6, 2025
7
same group

Attack Intelligence

CCL Products India was compromised in a ransomware attack attributed to skira in March 2025. The organization, operating in the Manufacturing sector in India, was added to the group's data leak site as part of an extortion campaign.

skira operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

[AI generated] CCL Products India is a leading manufacturer and exporter of instant coffee. It was established in 1994 and is headquartered in Hyderabad, India. The company has coffee processing units in multiple regions offering a wide range of coffee products including freeze-dried, spray-dried, and agglomerated coffees. CCL distributes its products globally in bulk packaging, as well as private labeled direct consumer packaging. They are widely respected for their sustainable and socially responsible business practices.

Additional Details

Other Victims — skira (7)

Quick Facts

CountryIndia (IN)
SectorManufacturing
Attack DateMar 6, 2025
Domaincclproducts.com
Intel Sourceransomware.live
StatusDUPLICATE CLAIM

Threat Group

skira
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.