ransomware
Potential
DR Congo (CD)
conglomerate
TK Holdings Group listed by the Radar ransomware group
TK Holdings Group (DRC)
CompanyTK Holdings Group (DRC)
CountryDR Congo (CD)
Sectorconglomerate
Breach date2025-10-18
People affected200,000
Ransomware groupradar
Data typesNot disclosed
<p>On 18 October 2025, the <strong>radar</strong> ransomware group listed <strong>TK Holdings Group (DRC)</strong> on its dedicated leak site in DR Congo. The group claims to have exfiltrated data from the organisation, a diversified conglomerate, before publishing the victim on its leak site.</p>
<h2>What the source reveals</h2>
<p>https://www.linkedin.com/in/altanko - Alexandre TANKO - Président Directeur Général TK HOLDINGS GROUP Limited. Bureau de liaison chargé des activités de support des entreprises du groupe implantées en République Démocratique du Congo. - TK TIMBER CONGO S.A.S.U. - TRANSLOG AFRICA S.A.S.U. - CONGO MINERAL RESOURCES COMPANY S.A.S. - CONGO MINERAL EXPLORATION COMPANY S.A.S.</p>
<h2>Risks</h2>
<ul>
<li>Exposure of commercial contracts, supplier agreements, procurement data, and pricing structures</li>
<li>Supply chain disruption if operational, logistics, or inventory management systems were encrypted</li>
<li>Competitive intelligence loss if proprietary business data or trade secrets were published</li>
<li>Employee personal data exposure including payroll records, tax identification, and banking details</li>
<li>Permanent loss of data integrity if backups were also compromised or encrypted</li>
<li>Regulatory and legal consequences depending on data protection laws in the affected jurisdictions</li>
</ul>
<h2>What remains unknown</h2>
<ul>
<li>the volume and specific data types exfiltrated from the organisation</li>
<li>the date of the initial intrusion and the attack vector used</li>
<li>whether the organisation engaged with the attackers or paid any ransom demand</li>
</ul>
<h2>Conclusion</h2>
<p>Ransomware attacks on conglomerate organisations can disrupt operations and expose sensitive data across supply chains. The affected organisation should conduct a thorough forensic investigation, notify relevant regulatory authorities, and communicate transparently with affected stakeholders. Organisations in DR Congo should review their ransomware preparedness, including offline backup verification and incident response testing.</p>