ShellCodeX
Tools โ€ข Events โ€ข News โ€ข Insights
Victim Claim

hgs-wt.at

lockbit5 ๐Ÿ‡ฆ๐Ÿ‡น Austria hgs-wt.at
Claimed by lockbit5
Listed on leak site 11 Jun 2026
Reported attack date 26 May 2026
Group claims tracked 103
Unverified claim. This entry reproduces a listing published by the lockbit5 group on its own extortion site. Attackers routinely exaggerate or fabricate victims. Nothing here confirms that hgs-wt.at suffered a breach, or what data was actually taken.

About the organisation

An Austrian company based in Wels that provides audit, tax, and business consulting services to corp...

What the listing means

hgs-wt.at appeared on the lockbit5 leak site on 11 June 2026. Groups publish a victim once negotiations stall or as pressure during them, so a listing usually means data was already exfiltrated โ€” the attack itself is dated 26 May 2026, 15 days before the listing. This group has not published new claims in the last 30 days.

Recommended actions

  • Treat any unsolicited message referencing hgs-wt.at as suspicious โ€” leaked data gets weaponised for phishing within days.
  • If you hold an account on hgs-wt.at, change that password now, update it anywhere you reused it, and enable two-factor authentication.
  • Watch for follow-on extortion: stolen data is often re-leaked or resold after the initial listing.
  • A leak-site listing is a claim made by the attacker, not a confirmed breach โ€” check the organisation's own disclosures before acting on it.

Leak-site evidence

Listing URL https://www.ransomware.live/id/aGdzLXd0LmF0QGxvY2tiaXQ1

Show leak-site screenshot

Captured from the group's extortion site. It may contain the victim's data or the attacker's messaging.

Screenshot of the lockbit5 leak-site listing for hgs-wt.at