On July 16, 2023, Swiss architecture firm arb Architekten AG appeared on the leak site of the abyss ransomware group. The listing states that attackers exfiltrated 220Gb of uncompressed internal files from the company, known online as www.arb.ch. The number of people whose personal information is contained in those files remains unknown.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 582 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
Details in the Leak Listing
The primary disclosure on the abyss leak site states that arb Architekten AG suffered a ransomware attack in which internal files were taken. It does not specify the exact data types inside the 220Gb archive, nor does it list individual record counts or name the systems initially compromised. The posting follows the group’s standard format: an announcement of successful exfiltration followed by a demand for payment to prevent release of the full dataset. As of the listing date, the firm had not issued a separate public breach notification detailing the incident.
Why This Matters for You and Your Family
When an architecture company’s internal files are stolen, the exposure often reaches beyond corporate documents. Client contracts, employee records, project invoices, and correspondence can contain names, addresses, dates of birth, phone numbers, email addresses, and financial details. If your family has ever worked with an architect, hired a contractor through a Swiss firm, or appeared in building-permit records tied to arb Architekten AG, your information may now sit inside the 220Gb archive. Once posted on a ransomware leak site, that data can be downloaded by anyone and reused for identity theft, phishing, or further extortion.
The Doxxing and Identity-Chain Risk
Ransomware leaks rarely stop at one company. A single exposed email or phone number can link your professional life to personal accounts, social-media handles, and even children’s gaming profiles. Attackers chain these fragments together to build complete identity dossiers. Public records that once seemed harmless suddenly become dangerous when paired with data from a breach like this one. Credential leaks of this nature frequently cascade into account takeovers on gaming platforms, where children’s usernames and shared family passwords are reused.