SHINDO3

Swagelok Japan

RansomwareSize not disclosed

POSSIBLE LEAKPostal address / Family membersClosed (final report)

Open in the live monitor ▶
Disclosed
Mar 11, 2026
Leak
Leak possible
Type
Ransomware
Status
Closed (final report)
Security spend
Not checked yet
Compensation
Not announced

What leaked

IdentityFull name
ContactAddress, Phone number, Email address
Family & private lifeNames and contact details of family members at the time of employment
Business dataCompany or organization and its address

Who is affected

  • Employees
  • Former employees
  • Family members at the time of employment
  • Contacts at business partners

Cause

Unauthorized access with ransomware

Timeline

  1. Unauthorized access and ransomware attack
  2. Announced suspension of operations
  3. Shipping resumed
  4. Order and quotation work resumed
  5. Impact on personal data announced

Response

  • More monitoring
  • Password reset
  • MFA
  • New detection

Added AI-based protections, 24-hour monitoring, reset the passwords of all accounts and made multi-factor authentication mandatory

What you should do

  1. Don't open links in emails from this company. The apology email itself may be fake
  2. Treat refund or apology calls and texts as scams. Call back only on the number from the official site
  3. Watch for unexpected mail or invoices; your address is hard to change
  4. Expect targeted phishing posing as HR or interview contacts
  5. Check the company's notice to see if you're affected

Lessons for companies

  1. Offline backups with restore drills; segment the network
  2. Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
  3. Run red teaming and AI-assisted hardening, and publish how much you invest

Sources