Full stored descriptionS******* was claimed by genesis on August 25, 2026. No further details were available from the leak-site post.
Breaches and leak-site claims
Confirmed breaches and unverified leak-site claims in one labeled feed. Confirmed breaches come from the California Attorney General breach portal, the Department of Health and Human Services Office for Civil Rights (HHS OCR, including its 42 CFR Part 2 substance-use records), Securities and Exchange Commission (SEC) 8-K cyber-incident filings, and the Have I Been Pwned breach directory. Leak-site claims come from RansomLook and, as a failover, ransomware.live. Claims are always labeled and never presented as fact.
Claims tracked since 2024-04-19.
Of 13,272 confirmed breaches, 5,360 come from the California Attorney General portal, which publishes no individuals-affected count. Those rows, and any other government-source row whose portal did not publish a count, read "Not reported" here (5,361 in all): the source's own gap, not omission on our part.
Filter to "Removed from leak site" to surface victims a ransomware group has taken off its own leak site. A removal can signal that the incident was resolved or the ransom paid, but a group can also remove a victim after a fake or withdrawn claim, or by taking down its own site, so it is an observation only, never a guarantee or confirmation of payment.
Ordered by the source-provided record date when present, even when its meaning is unknown; otherwise, by when this tracker first saw the record. Every displayed date states which event it represents.
Full stored descriptionWINTER Ingenieure, a Manufacturing sector organization, was claimed by akira on August 25, 2026. No further details were available from the leak-site post.
Full stored descriptionSTRUCTURED SETTLEMENT CAPITAL LLC, a Financial Services sector organization, was claimed by qilin on August 25, 2026. No further details were available from the leak-site post.
Full stored descriptionDavis & Ferber, a Business & Professional Services sector organization, was claimed by akira on August 25, 2026. No further details were available from the leak-site post.
Full stored descriptionAGROLAND S.A., an Agriculture sector organization, was claimed by qilin on August 25, 2026. No further details were available from the leak-site post.
Full stored descriptionPump Engineering Company, a Manufacturing sector organization, was claimed by Dark Project on August 25, 2026. No further details were available from the leak-site post.
Full stored descriptionPCA Group Sdn. Bhd. was claimed by majinahanashi on August 25, 2026. No further details were available from the leak-site post.
Full stored descriptionDentist in New Britain, CT, a Healthcare sector organization, was claimed by Dark Project on August 25, 2026. No further details were available from the leak-site post.
Full stored descriptionConsultores de Seguros was claimed by qilin on August 24, 2026.
Full stored descriptionShaheen Law Group PLC, a family law firm in Richmond, Virginia, USA, was claimed by Deadlock on August 24, 2026.
Full stored descriptionFurniture Bargaining Council, a furniture and upholstery industry organization in South Africa, was named in a claim by Deadlock on August 24, 2026.
Full stored descriptionlagegepesca.it, an Agriculture sector organization, was claimed by safepay on August 24, 2026.
Full stored descriptionThe Liberty Group was claimed by Dark Project on August 24, 2026.
Full stored descriptionJones, Little & Co., CPAs, LLP, a professional accounting firm, was claimed to be compromised by Dark Project on August 24, 2026.
Full stored descriptionDesign-Aire Engineering, INC, a Manufacturing sector organization, was claimed by Dark Project on August 24, 2026.
Full stored descriptionFurnished Quarters, a Hospitality sector organization, was claimed by Dark Project on August 24, 2026.
Full stored descriptionFrato, an interior lifestyle organization, was claimed by dragonforce on August 24, 2026.
Full stored descriptionCriba, an Argentina-based construction company, was claimed compromised by dragonforce on August 24, 2026.
Full stored descriptionBrookview Financial, a financial services organization, had a breach claimed by dragonforce on August 24, 2026.
Full stored descriptionWozair, an HVAC products and services organization, was claimed by the dragonforce group on August 24, 2026.
Full stored descriptionBihl was claimed by akira on August 24, 2026.
Full stored descriptionBooba Project claimed access to Davroc, a furniture and home furnishings manufacturing organization, on August 24, 2026.
Full stored descriptionChernyy & Associates, a law practice, was claimed by Booba Project on August 24, 2026.
Full stored descriptionManagementPro Inc., a computer software company, was claimed by arcusmedia on August 24, 2026.
Full stored descriptionMark'Techno, a mechanical and sheet metal organization, was claimed by arcusmedia on August 24, 2026.
Full stored descriptionGovernment of Vojvodina was claimed as compromised by Panzer on August 24, 2026.
Full stored descriptionQilin claimed Coldfish Seafood on August 24, 2026.
Full stored descriptionSinarmas Cepsa Pte. Ltd., an oleochemicals organization, was claimed as compromised by blackwater on August 24, 2026.
Full stored descriptionCountry-Wide Insurance, operating in the insurance sector, was claimed to be compromised on August 24, 2026.
Full stored descriptionFederis Abogados, a law practice, was claimed as breached by Booba Project on August 24, 2026.
Full stored descriptionSenvibe, an education and environmental organization, was claimed to be compromised by Panzer on August 24, 2026.
Full stored descriptionA&E + SMA Design was claimed on August 24, 2026 by the qilin group.
Full stored descriptionSharp Motor Group, an automotive dealership group based in Australia, was claimed by Storm on August 24, 2026.
Full stored descriptionCity of Mitchell, a government entity in South Dakota, United States, had its data claimed by Storm on August 24, 2026.
Full stored descriptionResi, a United Kingdom-based online architectural and home renovation platform, was claimed by krybit on August 24, 2026.
Full stored descriptionReported to the California Attorney General under the state data breach notification law.
Full stored descriptionReported to the California Attorney General under the state data breach notification law.
Full stored descriptionWestwing Group SE, a home and living products e-commerce company in Germany, was claimed by coinbasecartel on August 23, 2026.
Full stored descriptionCyrusOne, LLC was claimed by shinyhunters on August 23, 2026.
Full stored descriptionS.E.M.P. s.r.l. was named in a claim posted on August 23, 2026.
Full stored descriptionGlobal Go was claimed by killsec on August 23, 2026.
Full stored descriptionEuroflora srl was claimed by qilin on August 23, 2026.
Full stored descriptionTecnici Associati STP was claimed in a qilin post on August 23, 2026.
Full stored descriptionStudio BOLDRIN PAOLO was claimed by qilin on August 23, 2026.
Full stored descriptionQilin claimed Aurore Development S.p.A. on August 23, 2026.
Full stored descriptionL Group claimed compendiumusa.net on August 23, 2026.
Full stored descriptionClear Align is alleged to have been claimed by group qilin on August 23, 2026.
Full stored descriptionDifor was claimed by qilin on August 23, 2026.
Full stored descriptionBlack Cat Engineering & Construction WLL was claimed by qilin on August 23, 2026.
Full stored descriptionFRUCASTRO SL, a manufacturing organization, was claimed on August 23, 2026.
Per-incident affected-count reconciliation across government breach sources is not currently possible. The Maine Attorney General portal has been offline since 2026-06-12, and the California Attorney General publishes no affected-persons count. Where one incident is reported to more than one source it is cross-linked, and every count shown is only the number that source itself reported.
A "No longer listed" badge means the victim was present on the leak site and is now absent from the claiming group's current listing, confirmed across two consecutive checks. It is an observation only. It is not a confirmation that the organization paid, negotiated, or resolved the incident, and a group that takes down its own site can cause it. Removal is tracked for RansomLook claims, the only source that publishes a full per-group listing. A claim from another source carries no badge because its removal is not tracked, which is not evidence the victim is still listed.
Browse every record in stable static pages, for search engines and no-JavaScript access to the full corpus.
Leak-site claim data:RansomLook(CC BY 4.0), withransomware.liveas a failover, credited voluntarily (it carries no attribution obligation). Claims are unverified until the affected organization confirms an incident. Confirmed breaches come from the California Attorney General breach portal, theHHS OCR Breach Portal(including its 42 CFR Part 2 records), theMaine Attorney Generalbreach portal, Securities and Exchange Commission 8-K filings, andHave I Been Pwned(CC BY 4.0).