On April 27, 2026, the Swedish retail technology company Promotion AB appeared on the leak site of the dragonforce ransomware group. The listing states that internal files were exfiltrated during a ransomware attack on the firm, which has operated since 1979 and expanded through a 2020 merger with Eclipse Display.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Promotion AB
Get alerted the next time Promotion AB files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Promotion AB’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting on the dragonforce leak site indicates that Promotion AB’s internal documents were stolen and are now published. The exact number of people whose information is contained in the files remains unknown. Available reporting describes the exposed material as internal files, though the specific data types have not been independently verified by third parties. The company’s public description highlights its focus on simplifying daily operations for retail store owners across Sweden and the Nordic region.
April 27, 2026 marks the date the incident was listed. No confirmed timeline of initial breach, exfiltration, or ransom deadline has been publicly detailed in available sources.
Why This Matters for You and Your Family
When a company like Promotion AB that serves retail businesses suffers a breach, customer records, supplier details, employee information, or partner contacts can be exposed. If you or any member of your family has shopped at stores that use Promotion AB’s systems, worked with one of their clients, or had your information stored in their network, your personal data could now be in attackers’ hands. Internal files often contain names, addresses, phone numbers, email accounts, and sometimes payment or order history that feel harmless until they are combined with other leaks.