HackerFeeds
All ransomware incidents
siddhigreen.com

Ransomware group Orova hits Siddhi Green Excellence Pvt. Ltd

MEDIUM
·Energy & Utilities·IN·2026-09-20

Siddhi Green Excellence Pvt. Ltd — a energy & utilities target operating in IN has been listed by the Orova ransomware group on 2026-09-20. The information below reflects what the threat actor has publicly claimed on their leak site; the details have not been independently verified.

Incident Report

Target OrganizationSiddhi Green Excellence Pvt. Ltd
Threat Group
Orova
SummaryOur journey started in 2001 with baby steps like – treatability studies, general analysis of chemicals, water and wastewaters and providing technical consultancy for CC&A and NOC applications of chemical industries; and eventually, Siddhi Green expanded to offer a wide spectrum of environmental services under one roof with systematic planning and a quality-oriented approach.
Date of Breach2026-09-20
Discovery Date2026-09-20
RegionIN
Target Domainsiddhigreen.com
Business SectorEnergy & Utilities
Severity
MEDIUM

Claim by Orova

Our journey started in 2001 with baby steps like – treatability studies, general analysis of chemicals, water and wastewaters and providing technical consultancy for CC&A and NOC applications of chemical industries; and eventually, Siddhi Green expanded to offer a wide spectrum of environmental services under one roof with systematic planning and a quality-oriented approach.

Posted by the Orova threat actor on its public leak site. This is the group's own statement and has not been independently verified by HackerFeeds.

Sources

Victim website

siddhigreen.com

Leak post (onion / Tor)

tor

http://mll5ddmdzgiq2siv3qnocmmqyiigfpajtc663xtf32qtp6weycyx2hyd.onion/index.html?new_hvsakjnduqmxtrecpo

Open this URL in Tor Browser. Browsing leak sites carries real risk — view passively, never click further.

Disclaimer

HackerFeeds does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.