Full stored descriptionBreast Implant Center of Hawaii, a plastic surgery and aesthetics clinic in Hawaii, was claimed by wallstreet on September 25, 2026.
State now. Changed: +33 tier promotions, +2 known-exploited vulnerability additions, 24315 leak-site claims, and 3 confirmed breaches since yesterday.
Breaches and leak-site claims
Compare confirmed breaches with clearly labelled, unverified leak-site claims, each linked to its named source.
Two kinds of record, always labeled: CONFIRMED breaches published by a regulator, the Securities and Exchange Commission (SEC), or Have I Been Pwned, and CLAIMS posted by ransomware groups on their leak sites, which stay unverified until the affected organization confirms. Sources are listed at the bottom of the page.
Why now: 16 leak-site claims were first observed in the last 24 hours.
Claims tracked since 2020-01-12. The 24-hour figure is a rolling window; month and year are calendar periods (UTC), so on the first days of a month the 24-hour count can exceed the month-to-date count.
5,411 confirmed rows from government sources show "Not reported" because the source published no count. The California Attorney General portal, which never publishes one, supplied 5,410 confirmed rows.
What changed
This page does not publish a page-specific change count. Open the daily comparison for newly confirmed breaches and newly observed leak-site claims.
Details
The labels separate confirmed incidents from claims, and the filters below narrow the source-linked records.
16 leak-site claims were observed in the last 24 hours, and 927 have been observed so far this month.
Newest first, by the date the source gave; each date says what it is (for example, listed by group, filed with the SEC, or submitted to the Department of Health and Human Services Office for Civil Rights, HHS OCR). A row whose source gave no date is placed by the date it was first tracked here, and a source date whose meaning we do not know is labeled "Date meaning unknown".
Full stored descriptionReliance Audit was named in a claim posted by everest on September 25, 2026.
Full stored descriptionUNIRITA was named in a claim by everest on September 25, 2026.
Full stored descriptionCENELEC received a claim of compromise by the everest group on September 25, 2026.
Full stored descriptionETS was claimed on September 25, 2026 by the everest group.
Full stored descriptionMajani Insurance Brokers was claimed by vexy on September 25, 2026.
Full stored descriptionIberia Compositech Manufacturing, a manufacturing sector organization, faced a claim by qilin on September 25, 2026.
Full stored descriptionpharma5.ma was claimed by inc ransom on September 25, 2026. No further details were available from the leak-site post.
Full stored descriptionFTAPI Software, a software company based in Germany, was claimed to be compromised by the gentlemen on September 25, 2026.
Full stored descriptionTapClicks, a marketing analytics and SaaS platform in the United States, was claimed to be breached by N0n on September 25, 2026.
Full stored descriptionSpirals claimed Armada Credit Bureau on September 24, 2026.
Full stored descriptionefada.sa was claimed by krybit on September 24, 2026.
Full stored descriptionNEAD Pro, a legal and accounting services firm in Italy, was claimed by rhysida on September 24, 2026.
Full stored descriptionwelgenone.com was claimed by inc ransom on September 24, 2026. No further details were available from the leak-site post.
Full stored descriptionukbjja.org was claimed by inc ransom on September 24, 2026. No further details were available from the leak-site post.
Full stored descriptionbnlawmacau.com www.bn-ip.com, a Legal sector organization, was claimed by inc ransom on September 24, 2026. No further details were available from the leak-site post.
Full stored descriptionPrater & Ridley Attorneys At Law, a legal services firm located in the United States, was claimed by wallstreet on September 24, 2026.
Full stored descriptionPSA received a claim from shinyhunters on September 24, 2026.
Full stored descriptionWestside GI, an ambulatory endoscopy center, appeared on the pear leak site on September 24, 2026.
Full stored descriptionMartin Lawrence Galleries was claimed by pear on September 24, 2026.
Full stored descriptionIndroj Medical Group Inc. was claimed by pear on September 24, 2026.
Full stored descriptionCO.R.I.S. S.r.l. was claimed by lockbit5 on September 24, 2026.
Full stored descriptionWinfashion Technologies was claimed by dragonforce on September 24, 2026.
Full stored descriptionApplied Composites, an aerospace and defense manufacturer based in Lake Forest, California, United States, was claimed by storm on September 24, 2026.
Full stored descriptionMagna Legal Services, a consulting and litigation support services organization headquartered in Philadelphia, Pennsylvania, United States, was claimed by storm on September 24, 2026.
Full stored descriptionwallstreet claimed the Catholic University of El Salvador, a private educational institution in El Salvador, on September 24, 2026.
Full stored descriptionDao Group, a software organization, was claimed by qilin on September 24, 2026.
Full stored descriptionAll Tech Machine & Engineering was claimed by qilin on September 24, 2026.
Full stored descriptionInversiones Bolívar was claimed by qilin on September 24, 2026.
Full stored descriptionZig Inge Group, a real estate sector organization, was claimed by qilin on September 24, 2026.
Full stored descriptionStrack Companies was claimed by akira on September 24, 2026.
Full stored descriptionWallatec was claimed by akira on September 24, 2026.
Full stored descriptionGrupo Caberj was claimed by inc ransom on September 24, 2026. No further details were available from the leak-site post.
Full stored descriptionItaly was claimed to be compromised by ImNotAVillain on September 24, 2026.
Full stored descriptionAgiliance, a French accounting and business advisory organization, appeared on zawoo's leak site on September 24, 2026.
Full stored descriptionHEOLIS was claimed by zawoo on September 24, 2026.
Full stored descriptionFRANCARE Industries, a technical-supply and engineering firm in France, was claimed by zawoo on September 24, 2026.
Full stored descriptionZawoo claimed on September 24, 2026 to have compromised AMB (Ateliers de Menuiseries Bidet), a manufacturing organization based in France.
Full stored descriptionGDM Pipelines was claimed by qilin on September 24, 2026.
Full stored descriptionAgora coopérative agricole was claimed by qilin on September 24, 2026.
Full stored descriptionAir Tanzania Company Limited was claimed by krybit on September 24, 2026.
Full stored descriptionwww.jonesthegrocer.com was claimed by krybit on September 24, 2026.
Full stored descriptionArizona Vascular Medical Equipment, Inc was claimed by dragonforce on September 24, 2026.
Full stored descriptionBMGP Groupe, a synthetic resins and high-performance materials manufacturer in France, was claimed by dragonforce on September 24, 2026.
Full stored descriptionElite Industech Co., Ltd, a waste treatment organization based in Taiwan, was claimed by dragonforce on September 24, 2026.
Full stored descriptionHEC Group was claimed by dragonforce on September 24, 2026.
Full stored descriptionENKEI*, a light-alloy aluminum wheels manufacturer for automakers in the United States, was claimed compromised by the gentlemen on September 24, 2026.
Full stored descriptionCharles Keith, a Singapore-based fashion brand, was claimed by the gentlemen on September 24, 2026.
Full stored descriptionLigue se Grupo was claimed by the gentlemen on September 24, 2026.
Full stored descriptionSolucioning S.A., a company in the oil production sector, was claimed by Barracuda on September 24, 2026.
Per-incident affected-count reconciliation across government breach sources is not currently possible. The Maine Attorney General portal has been offline since 2026-06-12, and the California Attorney General publishes no affected-persons count. Where one incident is reported to more than one source it is cross-linked, and every count shown is only the number that source itself reported.
A "No longer listed" badge means the victim was present on the leak site and is now absent from the claiming group's current listing, confirmed across two consecutive checks. It is an observation only. It is not a confirmation that the organization paid, negotiated, or resolved the incident, and a group that takes down its own site can cause it. Removal is tracked for RansomLook claims, the only source that publishes a full per-group listing. A claim from another source carries no badge because its removal is not tracked, which is not evidence the victim is still listed.
Browse every record in stable static pages, for search engines and no-JavaScript access to the complete set.
Leak-site claim data:RansomLook(CC BY 4.0), withransomware.liveas a failover, credited voluntarily (it carries no attribution obligation). Claims are unverified until the affected organization confirms an incident. Confirmed breaches come from the California Attorney General breach portal, theHHS OCR Breach Portal(including its 42 CFR Part 2 records), theMaine Attorney Generalbreach portal (offline since 2026-06-12; no rows are currently in this index), Securities and Exchange Commission 8-K filings, andHave I Been Pwned(CC BY 4.0).
How this is computed
Confirmed incidents come from the named government and breach-directory sources. Leak-site entries remain unverified claims. Windows use the recorded disclosure or observation date, and missing dates remain explicit.
Method reviewed on .