On September 16, 2024, Tunisian plastics manufacturer ExcelPlast Tunisie appeared on the leak site operated by the Orca ransomware group. The listing states that internal files were exfiltrated during a ransomware attack; the exact number of records exposed and the full scope of data remain undisclosed by both the threat actor and the company.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch ExcelPlast Tunisie
Get alerted the next time ExcelPlast Tunisie files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about ExcelPlast Tunisie’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Details from the Leak Site
The Orca leak page claims successful data exfiltration from ExcelPlast Tunisie and displays a partial sample of stolen material. The disclosure indicates that the attackers obtained internal files but does not specify the volume, types of documents, or whether customer, supplier, or employee personal information was included. No ransom demand figure or payment deadline is publicly listed on the page. The incident follows the typical double-extortion pattern in which data is first stolen and then threatened with publication if payment is not made.
ExcelPlast Tunisie produces polypropylene and polyester plastic sheeting used across industrial and commercial sectors. While the company has not yet issued a public breach notification, its appearance on the Orca portal confirms that at least some internal data has been taken and may now be in the hands of cybercriminals.
Why This Matters for You and Your Family
When a manufacturer’s internal files are stolen, the information often includes spreadsheets containing names, addresses, phone numbers, email accounts, and sometimes national identification numbers of employees, customers, or business partners. Even if the leak site does not yet show personal records, the risk of future publication remains real. For ordinary families this can translate into sudden spikes in phishing emails, identity-theft attempts, or fraudulent loan applications using data that should never have left the company’s servers.