All ransomware incidents
Ransomware group thegentlemen hits Liztex Guatemala
Liztex Guatemala — a manufacturing target operating in GT has been listed by the thegentlemen ransomware group on 2026-06-03. The information below reflects what the threat actor has publicly claimed on their leak site; the details have not been independently verified.
Incident Report
| Target Organization | Liztex Guatemala |
|---|---|
| Threat Group | thegentlemen |
| Summary | ***.com Liztex is a leading Guatemalan textile manufacturer with over 50 years of experience in producing fabrics. We want to inform you that our group managed to breach and encrypt Liztex network. 398GB leaked from there as a result of this breach. What kind of data leaked: - SAP data - contacts - contracts - planning - logistics - projects data - personal data - employee data - medical data - partners data - customers data - financial data - correspondence - production data - quality control data - offers and proposals - subsidiary data - other sensitive business data |
| Date of Breach | 2026-06-03 |
| Discovery Date | 2026-06-04 |
| Region | GT |
| Target Domain | liztex.com |
| Business Sector | Manufacturing |
| Severity | MEDIUM |
Claim by thegentlemen
***.com Liztex is a leading Guatemalan textile manufacturer with over 50 years of experience in producing fabrics. We want to inform you that our group managed to breach and encrypt Liztex network. 398GB leaked from there as a result of this breach. What kind of data leaked: - SAP data - contacts - contracts - planning - logistics - projects data - personal data - employee data - medical data - partners data - customers data - financial data - correspondence - production data - quality control data - offers and proposals - subsidiary data - other sensitive business data
Posted by the thegentlemen threat actor on its public leak site. This is the group's own statement and has not been independently verified by HackerFeeds.
Sources
Disclaimer
HackerFeeds does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.

