Full stored descriptionClark Hill was claimed by leakeddata on September 22, 2026.
State now. Changed: 0 tier promotions, 0 known-exploited vulnerability additions, 379 leak-site claims, and 0 confirmed breaches since yesterday.
Breaches and leak-site claims
Compare confirmed breaches with clearly labelled, unverified leak-site claims, each linked to its named source.
Confirmed breaches and unverified leak-site claims in one labeled feed. Confirmed breaches come from the California Attorney General breach portal, the Department of Health and Human Services Office for Civil Rights (HHS OCR, including its 42 CFR Part 2 substance-use records), Securities and Exchange Commission (SEC) 8-K cyber-incident filings, and the Have I Been Pwned breach directory. Leak-site claims come from RansomLook and, as a failover, ransomware.live. Claims are always labeled and never presented as fact.
Why now: 31 leak-site claims were first observed in the last 24 hours.
Claims tracked since 2021-11-28. The 24-hour figure is a rolling window; month and year are calendar periods (UTC), so on the first days of a month the 24-hour count can exceed the month-to-date count.
Of 13,402 confirmed breaches, 5,404 show "Not reported" for individuals affected because the portal published no count: all 5,403 California Attorney General rows plus 1 other government-source row. The gap is the source's, not omission on our part.
What changed
This page does not publish a page-specific change count. Open the daily comparison for newly confirmed breaches and newly observed leak-site claims.
Details
The labels separate confirmed incidents from claims, and the filters below narrow the source-linked records.
Ordered by the source-provided record date when present, even when its meaning is unknown; otherwise, by when this tracker first saw the record. Every displayed date states which event it represents.
Full stored descriptionTaspen Life, an insurance organization, was claimed by lockbit5 on an unspecified date.
Full stored descriptionGrupo Hospifar S.R.L. was claimed by titan on September 22, 2026. No further details were available from the leak-site post.
Full stored descriptionSherman Chan, DDS, Inc., a Healthcare sector organization, was claimed by titan on September 22, 2026. No further details were available from the leak-site post.
Full stored descriptionThe Federal Bureau of Investigation received a claim from shinyhunters on an unknown date regarding alleged compromise of FBI systems and personnel records.
Full stored descriptionB... received a claim from leakeddata on an unknown date.
Full stored descriptionCozen O'Connor received a claim from leakeddata on an unknown date.
Full stored descriptionAn organization with an acronym beginning with Q was claimed by the leakeddata group on an unspecified date.
Full stored descriptionAn organization with name beginning with W was claimed by leakeddata on an unknown date.
Full stored descriptionKrapf Group was claimed by kairos.
Full stored descriptionTulare Western High School, operating in the education sector, had data breach claims attributed to booba team on an unknown date.
Full stored descriptionGotthelf, a healthcare organization, was claimed as breached by booba team on an unspecified date.
Full stored descriptionGaedke & Partner Steuerberatung, an accounting firm, was claimed to have been compromised by anubis on an unspecified date.
Full stored descriptionVIT claimed by audit team on September 13, 2026.
Full stored descriptionAUDIT ENTITY: Pr***IT was claimed by audit team.
Full stored descriptionTruAmerica Multifamily was claimed by termite on an unknown date.
Full stored descriptiontheLender was claimed by termite on an unknown date.
Full stored descriptionSealcon was claimed by the termite group on an unspecified date.
Full stored descriptionTextile City, a home improvement and hardware retail organization, was claimed by the qilin group on an unknown date.
Full stored descriptionThe Fifty/50, a hospitality sector organization, was claimed by qilin on an unknown date.
Full stored descriptionDI.C.S.EL. S.R.L., an electrical and measurement solutions company in Italy, was claimed by akira on an unknown date.
Full stored descriptionCoe Press Equipment, a manufacturer of coil handling and servo roll feed equipment, was claimed by akira on an unknown date.
Full stored descriptionTDMI was subject to a claim by akira on an unknown date.
Full stored descriptionPr***IT, a Business & Professional Services sector organization, was claimed by AuditTeam on September 22, 2026. No further details were available from the leak-site post.
Full stored descriptionColumbus Informatica, a software organization, received a claim from qilin on an unknown date.
Full stored descriptionsecp0 claimed access to NAI Earle Furman, a real estate brokerage firm, on an unknown date.
Full stored descriptionNAI Earle Furman, a Business & Professional Services sector organization, was claimed by secp0 on September 22, 2026.
Full stored descriptionSealcon, a cable management provider in the electrical components sector based in Colorado, United States, was claimed by termite on September 22, 2026.
Full stored descriptionFinSoft, a retail software vendor and IT services provider in Uzbekistan, was claimed by N0n on September 22, 2026.
Full stored descriptionTruAmerica Multifamily, a real estate investment and asset management firm operating in the United States, was claimed by termite on September 22, 2026.
Full stored descriptiontheLender, a wholesale mortgage company in the United States, was claimed by termite on September 22, 2026.
Full stored descriptionAstemo, Ltd., an automotive parts supplier, was claimed by metaencryptor on September 21, 2026.
Full stored descriptionHogan Lovells Cadwalader was claimed by SilentRansomGroup on September 21, 2026.
Full stored descriptionkyyba.com was claimed by unsafe on an unknown date.
Full stored descriptionMetallco was claimed by play on September 21, 2026. No further details were available from the leak-site post.
Full stored descriptionHurley was claimed by play on September 21, 2026. No further details were available from the leak-site post.
Full stored descriptionHogan Lovells Cadwalader has been named in a claim by leakeddata with an unknown claim date.
Full stored descriptionQilin claimed to have breached Telrad Networks, a manufacturing organization, on an unspecified date.
Full stored description360 Consulenza S.r.l., a Business & Professional Services sector organization, was claimed by nightspire on September 21, 2026. No further details were available from the leak-site post.
Full stored descriptionSpo**** Schools, an Education sector organization, was claimed by nightspire on September 21, 2026. No further details were available from the leak-site post.
Full stored descriptionPajulahti was claimed by the gentlemen.
Full stored descriptionDW McMillan Memorial Hospital was claimed by the gentlemen.
Full stored descriptionSumma Gold, a gold mining organization, was listed on the anubis leak site on an unspecified date.
Full stored descriptionCrystal Glass was claimed by the gentlemen.
Full stored descriptionPuroClean, a property damage restoration franchise in North America, is claimed by the gentlemen on an unspecified date.
Full stored descriptionBrancóptica, a family-owned optical retail chain in Portugal, was claimed by the gentlemen on an unknown date.
Full stored descriptionCraisa, an agricultural and construction machinery distributor in Costa Rica, was claimed by the gentlemen on an unknown date.
Full stored descriptionAgrocampo, a veterinary and agricultural supplies company based in Colombia, was claimed by the gentlemen on an unknown date.
Full stored descriptionMarkisol, a Swedish window blinds manufacturer, was claimed by the gentlemen on an unknown date.
Full stored descriptionTrifecta Software, a software development company in Costa Rica, was claimed by the gentlemen on an unknown date.
Per-incident affected-count reconciliation across government breach sources is not currently possible. The Maine Attorney General portal has been offline since 2026-06-12, and the California Attorney General publishes no affected-persons count. Where one incident is reported to more than one source it is cross-linked, and every count shown is only the number that source itself reported.
A "No longer listed" badge means the victim was present on the leak site and is now absent from the claiming group's current listing, confirmed across two consecutive checks. It is an observation only. It is not a confirmation that the organization paid, negotiated, or resolved the incident, and a group that takes down its own site can cause it. Removal is tracked for RansomLook claims, the only source that publishes a full per-group listing. A claim from another source carries no badge because its removal is not tracked, which is not evidence the victim is still listed.
Browse every record in stable static pages, for search engines and no-JavaScript access to the full corpus.
Leak-site claim data:RansomLook(CC BY 4.0), withransomware.liveas a failover, credited voluntarily (it carries no attribution obligation). Claims are unverified until the affected organization confirms an incident. Confirmed breaches come from the California Attorney General breach portal, theHHS OCR Breach Portal(including its 42 CFR Part 2 records), theMaine Attorney Generalbreach portal (offline since 2026-06-12; no rows are currently in this index), Securities and Exchange Commission 8-K filings, andHave I Been Pwned(CC BY 4.0).
How this is computed
Confirmed incidents come from the named government and breach-directory sources. Leak-site entries remain unverified claims. Windows use the recorded disclosure or observation date, and missing dates remain explicit.
Method reviewed on .