CSIDB logo
Incident

La Piamontesa

Incident posture

Attack window
Nov 2022
Location
Argentina
Status
Historical
CIA posture
Available to members
Updated
2025-11-26 00:00

Linked entities

Victim
La Piamontesa
Threat actors
1 actor
Sources
1 source

Timeline

Occurred
Nov 2022
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

La Piamontesa, an Argentine food company, was listed on BlackByte's leak site with threat actors claiming possession of internal documents, evidenced by posted samples that did not contain personal data. The attackers demanded $150,000 for alleged data deletion, but the firm did not publicly acknowledge the incident or respond to inquiries regarding the breach.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

In late November 2022, the Argentine food company La Piamontesa appeared on BlackByte’s data leak site following a claimed cyberattack. The ransomware group listed the company with a $150,000 ransom demand for alleged data deletion, though no specific attack date was disclosed. BlackByte posted a limited number of internal corporate documents as proof of compromise, but the sample files did not contain identifiable personal information. The threat actors did not specify the volume or full scope of data allegedly exfiltrated, nor did they describe the initial attack vector or compromised systems. La Piamontesa did not acknowledge the incident publicly through its website or social media channels following the leak site listing.

DataBreaches.net attempted to contact both La Piamontesa and BlackByte for additional details but received no responses from either party. The company’s operational status and any internal containment measures remained unconfirmed at the time of reporting. No further evidence of data exposure or secondary leaks emerged in public forums following the initial listing. The incident’s impact on business operations, customers, or supply chains was not verifiable from available sources. BlackByte maintained the listing with the unchanged ransom demand as of the article’s publication date, November 25, 2022.

Sources

Sources available to members: 1 source.

CSIDB