On July 26, 2024, Brazilian nuclear-industry supplier Nuclep appeared on the leak site operated by the meow ransomware group. The listing states that the company suffered a ransomware attack in which internal files were exfiltrated. The meow operators claim to have stolen company data and are using the public listing to pressure Nuclep for payment. Anyone whose personal information appears in those internal files now faces immediate exposure.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Nuclep
Get alerted the next time Nuclep files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Nuclep’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Reported Details from the Listing
The meow leak site entry for Nuclep states that the company was hit by a ransomware incident and that attackers successfully removed internal files. The disclosure does not quantify how many records were taken, list specific data types such as customer names or employee Social Security numbers, or state the exact date of initial compromise. It simply declares that exfiltrated material is available and will be published if the demanded ransom is not paid. Public mirrors of the onion-site listing, hosted on ransomware.live, preserve these claims exactly as posted by the group.
Why This Matters for You and Your Family
When a company that handles government contracts or sensitive industrial data is breached, the information inside its files often includes details about employees, contractors, business partners, and sometimes their family members. Even if the leak site does not spell out every record type, the exposure of internal files typically means names, addresses, contact information, and possibly financial or identification documents are now in criminal hands. For ordinary people connected to Nuclep, this translates into heightened risk of identity theft, phishing campaigns, and long-term fraud that can affect credit scores, tax filings, and employment background checks for years.
July 26, 2024 marks the moment the threat became public. From that date forward, any data stolen in the attack can be traded, sold, or used in follow-on crimes without further warning.