Ransomware

Devman Denounces Attack on Productos Lácteos Flor de Aragua, C.A.

On December 16, 2025, ransomware trackers reported that Devman had listed Productos Lácteos Flor de Aragua, C.A. as a victim. The actor claimed to have stolen financial, customer, and human resources data, but the extent of the breach was not confirmed by the company. A secondary source cited an incorrect domain for the leak site (www.unre.com), so the verified domain of the victim, flordearagua.com, is retained here.

Overview

Missing evidence

It is unclear whether any data was actually leaked or whether any physical loss occurred.No official statement from the victim acknowledging the attack was found.No national or international news coverage was found to corroborate the incident.

Impact details

Ransomware trackers list Productos Lácteos Flor de Aragua C.A. as an alleged victim of Devman. Public sources support the ransomware claim and the existence of a leak site, but the encryption, service disruption, authenticity of the data, and the volume of data have not been confirmed.

alleged business datahr data attachedalleged customer dataalleged financial data

Classification & severity

Category
Malicious code
Subtype
Ransomware
Confidence
Medium

Ransomware.live and DeXpose list a Devman ransomware/leak site associated with Productos Lácteos Flor de Aragua C.A.; public sources do not confirm encryption, an outage, or the authenticity of the data.

Severity assessment

Medium
Information impact
Suspected
Affected scope
Organization-wide
Critical service
None
Public confidence
Limited
Recoverability
Extended

Public ransomware trackers support Devman’s claim, but no confirmation from the victim, no independent validation of the dataset, and no evidence of encryption or service disruption has been found.

Data exfiltration· Claimed ConfidentialityIntegrityAvailability

Timeline

Claim

Devman listed Productos Lácteos Flor de Aragua, C.A. as an alleged victim.

Evidence & sources

2 sources