Skip to content
Leak-site post naming Plaza Lama, captured by ThreatCluster

Plaza Lama

payload

Ransomware leak-site victim intelligence · EN

Data size
1 GB
Posted
Aug 8, 2024
Countdown
00d 00h 00m
Country
Dominican Republic
Industry
retail

Summary

Written by ThreatClusterfrom site fields, victim profile, leak post, screenshot

The payload group claims to have exfiltrated 200 GB of data from Plaza Lama, a Dominican Republic-based retail company. The leak page is in countdown mode, with 00d 00h 00m remaining. The leak identifies the victim by domain plazalama.com and provides a leak_url on a .onion site along with the site URL plazalama.com.do.

Describes what the group claims on its leak site. A listing is not confirmation that a breach occurred.

What was taken

Plaza Lama is a retail company based in the Dominican Republic that offers a wide range of products including electronics, home goods, clothing, and groceries. The company aims to provide quality products at competitive prices to meet the needs of its diverse clientele. Plaza Lama serves both individual consumers and businesses, making it a go-to destination for shopping in the region. With multiple locations, it strives to enhance the shopping experience through excellent customer service and a variety of offerings.

Also stated on the leak page

Fields this group publishes that do not map to a standard column. Labels are the site's own.

leak_url
http://payload6eualw6kni6v2lqn7ovjcl76ojx25z5unsyvqo3lbqy3bo5qd.onion/
site_url
https://plazalama.com.do

Leak-site images (1)

Images from the victim's leak listing. Thumbnails scraped from the onion page are blurred by default — click a thumbnail to view.

ThreatCluster capture