A threat actor claims to have stolen approximately 650GB of internal data from Micro-Comm, Inc., an industrial automation company that develops water and wastewater control systems, manufacturing control panels, microcontrollers, and SCADA software.
The alleged breach was posted on August 14, with the seller claiming the company refused to negotiate following the intrusion. According to the listing, the archive contains roughly 900,000 files obtained during the previous month and represents what the threat actor describes as the company’s “whole infrastructure dump.” BreachNews has not independently verified the claims or reviewed the alleged dataset.
Micro-Comm had not issued any public statement regarding the alleged incident at time of publication.
SCADA software and engineering documents allegedly exposed
According to the threat actor, the alleged archive contains approximately 900,000 files totaling 650GB.
The listing claims the stolen data includes:
- SCADA software
- Engineering maps and technical schematics
- Infrastructure documentation
- System backups
- Employee information
- Citizen information
- Partner information
- Corporate emails
- Worksite photographs
If authentic, the exposure would extend beyond ordinary business records to include operational technology documentation and software supporting industrial control environments.
Operational technology company
Micro-Comm is based in Olathe, Kansas, and develops industrial automation systems for water and wastewater utilities. The company provides telemetry equipment, control panels, remote terminal units, and supervisory control and data acquisition (SCADA) software used to monitor and manage critical infrastructure environments. [oai_citation:0‡LinkedIn](https://www.linkedin.com/company/micro-comm-inc.?utm_source=chatgpt.com)
Organizations supporting operational technology environments are increasingly targeted by financially motivated threat actors because engineering documentation, system configurations, and proprietary software can be valuable for extortion and, in some cases, create broader risks if publicly released.
Fresh data claim remains unverified
The seller claims the files were obtained “last month” and have not previously been distributed, describing the archive as entirely fresh. No evidence was publicly provided to independently establish when the data was allegedly exfiltrated or whether it originated from Micro-Comm’s production environment.
The threat actor also alleges the company declined to cooperate following the intrusion before the dataset was advertised for download.
BreachNews has not independently confirmed the authenticity of the claimed 650GB archive, the reported file count, or the alleged compromise.












