Full stored descriptionRaajratna Metal Industries Limited, an organization in India, was claimed by krybit on October 2, 2026.
State now. Changed: +53 tier promotions, 0 known-exploited vulnerability additions, 20 leak-site claims, and 0 confirmed breaches since yesterday.
Breaches and leak-site claims
Compare confirmed breaches with clearly labelled, unverified leak-site claims, each linked to its named source.
Two kinds of record, always labeled: CONFIRMED breaches published by a regulator, the Securities and Exchange Commission (SEC), or Have I Been Pwned, and CLAIMS posted by ransomware groups on their leak sites, which stay unverified until the affected organization confirms. Sources are listed at the bottom of the page.
Why now: 42 leak-site claims were first observed in the last 24 hours.
Claims tracked since 2020-01-12. The 24-hour figure is a rolling window; month and year are calendar periods (UTC), so on the first days of a month the 24-hour count can exceed the month-to-date count.
5,691 confirmed rows from government sources show "Not reported" because the source published no count. The California Attorney General portal, which never publishes one, supplied 5,424 confirmed rows.
What changed
This page does not publish a page-specific change count. Open the daily comparison for newly confirmed breaches and newly observed leak-site claims.
Details
The labels separate confirmed incidents from claims, and the filters below narrow the source-linked records.
Dated confirmed breaches this tracker collected per sector for 2026-09-25 through 2026-10-01, Coordinated Universal Time (UTC), compared with 2026-09-18 through 2026-09-24. Each row is dated by its own source: a Securities and Exchange Commission (SEC) filing date, a state Attorney General portal's reported date, a Department of Health and Human Services Office for Civil Rights (HHS OCR) submission date, or another government source's own disclosure date. The last column counts disclosures dated in the 24 hours before the data export; a row stored with a date but no time counts when that date is today or yesterday. Rows without a disclosure date are left out of every column, and "Unclassified" collects rows whose sector this tracker has not matched to its sector list.
| Sector | Confirmed, latest 7 days | Prior 7 days | Change | Last 24 hours |
|---|---|---|---|---|
| Financial Services | 5 | 1 | Up 400.0% | 0 |
| Unclassified | 3 | 2 | Up 50.0% | 0 |
| Healthcare | 2 | 4 | Down 50.0% | 0 |
| Business & Professional Services | 1 | 4 | Down 75.0% | 0 |
| Insurance | 1 | 3 | Down 66.7% | 0 |
| Government | 1 | 1 | No change | 0 |
| Agriculture | 1 | 0 | Up from none in the prior 7 days | 0 |
| Education | 1 | 0 | Up from none in the prior 7 days | 0 |
| Nonprofit | 1 | 0 | Up from none in the prior 7 days | 0 |
| Technology | 1 | 0 | Up from none in the prior 7 days | 0 |
Showing 10 of 14 sectors with a dated confirmed breach in these windows, ordered by confirmed breaches in the latest 7 days, so sectors that went quiet sort last. Every one of them is indata/breaches_index/manifest.json.
42 leak-site claims were observed in the last 24 hours, and 48 have been observed so far this month.
Newest first, by the date the source gave; each date says what it is (for example, listed by group, filed with the SEC, or submitted to the Department of Health and Human Services Office for Civil Rights, HHS OCR). A row whose source gave no date is placed by the date it was first tracked here, and a source date whose meaning we do not know is labeled "Date meaning unknown".
Full stored descriptionPierrefeu Immobilier, a real estate organization in France, was claimed by krybit on October 2, 2026.
Full stored descriptionShree Saibaba Sansthan Trust, a charitable trust in India, was claimed by krybit on October 2, 2026.
Full stored descriptionKRES spol. s r.o., a Czech organization, was claimed by krybit on October 2, 2026.
Full stored descriptionStates Industries was claimed by storm on October 2, 2026.
Full stored descriptionMandurah State Emergency Service, a volunteer emergency rescue unit in Australia, was claimed by the gentlemen on October 2, 2026.
Full stored descriptionWestrop Primary & Nursery School, an education sector organization in the United Kingdom, was claimed by the gentlemen on October 2, 2026.
Full stored descriptionDeadlock claimed on October 2, 2026, that Union FA, an accounting, tax, and consulting services company, was compromised.
Full stored descriptionDeadlock claimed on October 2, 2026 to have compromised Far West Contractors, a commercial construction company in the aerospace and defense sector operating in the United States.
Full stored descriptionHospital de la Santa Creu i Sant Pau, a healthcare organization in Barcelona, was claimed by the gentlemen on October 2, 2026.
Full stored descriptionRotamac Inc., an industrial equipment distributor based in Canada, was claimed by the gentlemen on October 2, 2026.
Full stored descriptionSangre de Cristo Electric Association was claimed by inc ransom on October 2, 2026. No further details were available from the leak-site post.
Full stored descriptionAutomovil Club del Ecuador ANETA, a Transportation & Logistics sector organization, was claimed by Barracuda on October 2, 2026.
Full stored descriptionAllied Machine & Engineering, a manufacturing company based in Dover, Ohio, United States, was claimed by storm on October 2, 2026.
Full stored descriptionStep By Step, a nonprofit human services organization in the United States, was claimed by storm on October 2, 2026.
Full stored descriptionMain Place Mall was posted by netrunner on October 2, 2026.
Full stored descriptionHospital Hermilio Valdizán, a Healthcare sector organization, was claimed by ransomhouse on October 1, 2026. No further details were available from the leak-site post.
Full stored descriptionEURODITEL/RESOTELECOM, a Technology sector organization, was claimed by krybit on October 1, 2026.
Full stored descriptionSlate Valley Unified School District, a public school district in Vermont, appeared on a kairos leak site on October 1, 2026.
Full stored descriptionSuperior Plating Technology CO was claimed by morpheus on October 1, 2026.
Full stored descriptionFUNAP - Fundação "Prof. Dr. Manoel Pedro Pimentel" had a claimed breach disclosed by booba team on October 1, 2026.
Full stored descriptionAssociated Gastroenterologists of Central New York, P.C., a healthcare organization operating in the United States, was claimed by booba team on October 1, 2026.
Full stored descriptionSteelco was claimed by audit team on October 1, 2026.
Full stored descriptionAUDIT ENTITY: ProMind IT was claimed by audit team on October 1, 2026.
Full stored descriptionKrycler, Ervin, Taubman & Kaminsky, an accounting, litigation support, and consulting firm in the United States, was claimed by akira on October 1, 2026.
Full stored descriptionWesmar, a marine technology organization, was claimed by akira on October 1, 2026.
Full stored descriptionDPL Group, a building materials and home improvement products supplier, was claimed by akira on October 1, 2026.
Full stored descriptionTerca was claimed by ransomhouse on October 1, 2026. No further details were available from the leak-site post.
Full stored descriptionDisk Precision Group, a Singapore-based organization, was claimed to be compromised by krybit on October 1, 2026.
Full stored descriptionGuardian Pharmacy LLC, a Healthcare sector organization, was claimed by inc ransom on October 1, 2026. No further details were available from the leak-site post.
Full stored descriptionDen Hartog Industries was claimed by inc ransom on October 1, 2026. No further details were available from the leak-site post.
Full stored descriptionNorthern Counties Health Care, a Healthcare sector organization, was claimed by inc ransom on October 1, 2026. No further details were available from the leak-site post.
Full stored descriptionPost Metal Recycling, a Manufacturing sector organization, was claimed by inc ransom on October 1, 2026. No further details were available from the leak-site post.
Full stored descriptionRimrock Foundation, a Nonprofit sector organization, was claimed by inc ransom on October 1, 2026. No further details were available from the leak-site post.
Full stored descriptionFUNAP - Fundação "Prof. Dr. Manoel Pedro Pimentel", a Government sector organization, was claimed by Booba Project on October 1, 2026.
Full stored descriptionASSOCIATED GASTROENTEROLOGISTS OF CENTRAL NEW YORK, P.C, a Healthcare sector organization, was claimed by Booba Project on October 1, 2026.
Full stored descriptionGraybar Electric Company, Inc., an electrical equipment sector organization, was claimed by redact on October 1, 2026.
Full stored descriptionC*ro *nty *es was claimed by nightspire on October 1, 2026. No further details were available from the leak-site post.
Full stored descriptiongenesis claimed a breach of VPNE, a service management company, on October 1, 2026.
Full stored descriptionTLC Perinatal, a healthcare services provider, was claimed as compromised by genesis on October 1, 2026.
Full stored descriptionVera Science, a biotechnology company, was claimed by the genesis group on October 1, 2026.
Full stored descriptionOwens Distributors was claimed by genesis on October 1, 2026.
Full stored descriptionPark Dental received a claim from the chaos group on October 1, 2026.
Full stored descriptionLaboratorios Roemmers SAICF, a pharmaceutical company in Argentina, was claimed to be breached by aurora on October 1, 2026.
Full stored descriptionDynamic Office Solutions was claimed by qilin on October 1, 2026.
Full stored descriptionGranja Avícola La Ponderosa, a poultry manufacturing organization in Venezuela, was claimed by emperador on October 1, 2026.
Full stored descriptionConsilio.com was claimed on October 1, 2026 by lockbit5.
Full stored descriptionengic tech, a Technology sector organization, was claimed by black x on October 1, 2026. No further details were available from the leak-site post.
Full stored descriptionZelham, Inc., a U.S. hospitality renovation general contractor, was claimed by the gentlemen on September 30, 2026.
Full stored descriptionSoftware Answers, a Banyan Software Company, a Technology sector organization, was claimed by pear on September 30, 2026.
Per-incident affected-count reconciliation across government breach sources is limited by what each source publishes: HHS OCR reports a nationwide count; the Washington, Oregon, and Maryland Attorneys General each report only their own state's residents affected; the Maine Attorney General portal has been offline since 2026-06-12; and the California Attorney General publishes no affected-persons count. Where one incident is reported to more than one source it is cross-linked, and every count shown is only the number that source itself reported, labelled with the population it counts.
A "No longer listed" badge means the victim was present on the leak site and is now absent from the claiming group's current listing, confirmed across two consecutive checks. It is an observation only. It is not a confirmation that the organization paid, negotiated, or resolved the incident, and a group that takes down its own site can cause it. Removal is tracked for RansomLook claims, the only source that publishes a full per-group listing. A claim from another source carries no badge because its removal is not tracked, which is not evidence the victim is still listed.
Browse every record in stable static pages, for search engines and no-JavaScript access to the complete set.
Leak-site claim data:RansomLook(CC BY 4.0), withransomware.liveas a failover, credited and linked as its terms require (Source: Ransomware.live). Claims are unverified until the affected organization confirms an incident. Confirmed breaches come from the California Attorney General breach portal, theHHS OCR Breach Portal(including its 42 CFR Part 2 records), theMaine Attorney Generalbreach portal (offline since 2026-06-12; no rows are currently in this index), theWashington Attorney Generalbreach notifications directory, theOregon Attorney Generalbreach directory, theMaryland Attorney Generalsecurity breach notice lists, Securities and Exchange Commission 8-K filings, andHave I Been Pwned(CC BY 4.0).
How this is computed
Confirmed incidents come from the named government and breach-directory sources. Leak-site entries remain unverified claims. Windows use the recorded disclosure or observation date, and missing dates remain explicit.
Method reviewed on .