<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Ransomware Watch</title>
    <description>Recent victim claims posted by ransomware groups, via ransomware.live. Claims are unverified.</description>
    <link>https://www.cybersecurityalphabetsoup.com/news/</link>
    <atom:link href="https://thestateofcybersecurity.github.io/ransomwareRSS/feed.xml" rel="self" type="application/rss+xml"/>
    <lastBuildDate>Wed, 09 Sep 2026 14:40:19 GMT</lastBuildDate>
    <ttl>60</ttl>
    <item>
      <title>incransom: https://mediengruppethiel.de/</title>
      <link>https://www.ransomware.live/id/aHR0cHM6Ly9tZWRpZW5ncnVwcGV0aGllbC5kZS9AaW5jcmFuc29t</link>
      <guid isPermaLink="false">incransom/https://mediengruppethiel.de//2026-09-09T13:31:40.717Z</guid>
      <pubDate>Wed, 09 Sep 2026 13:31:40 GMT</pubDate>
      <description>Ransomware group &quot;incransom&quot; listed https://mediengruppethiel.de/ on its leak site. Sector: Other. Country: DE. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>direwolf: RelyComply AML Platform</title>
      <link>https://www.ransomware.live/id/UmVseUNvbXBseSBBTUwgUGxhdGZvcm1AZGlyZXdvbGY=</link>
      <guid isPermaLink="false">direwolf/RelyComply AML Platform/2026-09-09T13:28:59.906Z</guid>
      <pubDate>Wed, 09 Sep 2026 13:28:59 GMT</pubDate>
      <description>Ransomware group &quot;direwolf&quot; listed RelyComply AML Platform on its leak site. Sector: Financial Services. Country: GB. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>akira: Kyodo USA</title>
      <link>https://www.ransomware.live/id/S3lvZG8gVVNBQGFraXJh</link>
      <guid isPermaLink="false">akira/Kyodo USA/2026-09-09T13:25:41.348Z</guid>
      <pubDate>Wed, 09 Sep 2026 13:25:41 GMT</pubDate>
      <description>Ransomware group &quot;akira&quot; listed Kyodo USA on its leak site. Sector: Manufacturing. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>emperador: Bosnia and Herzegovina Mine Action Center</title>
      <link>https://www.ransomware.live/id/Qm9zbmlhIGFuZCBIZXJ6ZWdvdmluYSBNaW5lIEFjdGlvbiBDZW50ZXJAZW1wZXJhZG9y</link>
      <guid isPermaLink="false">emperador/Bosnia and Herzegovina Mine Action Center/2026-09-09T12:53:31.116Z</guid>
      <pubDate>Wed, 09 Sep 2026 12:53:31 GMT</pubDate>
      <description>Ransomware group &quot;emperador&quot; listed Bosnia and Herzegovina Mine Action Center on its leak site. Sector: Government &amp; Defense. Country: BA. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>Dark Project: Specchem LLC</title>
      <link>https://www.ransomware.live/id/U3BlY2NoZW0gTExDQERhcmsgUHJvamVjdA==</link>
      <guid isPermaLink="false">Dark Project/Specchem LLC/2026-09-09T12:52:48.558Z</guid>
      <pubDate>Wed, 09 Sep 2026 12:52:48 GMT</pubDate>
      <description>Ransomware group &quot;Dark Project&quot; listed Specchem LLC on its leak site. Sector: Manufacturing. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>qilin: Jet Specialty</title>
      <link>https://www.ransomware.live/id/SmV0IFNwZWNpYWx0eUBxaWxpbg==</link>
      <guid isPermaLink="false">qilin/Jet Specialty/2026-09-09T12:09:25.462Z</guid>
      <pubDate>Wed, 09 Sep 2026 12:09:25 GMT</pubDate>
      <description>Ransomware group &quot;qilin&quot; listed Jet Specialty on its leak site. Sector: Manufacturing. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>emperador: Universal Starch-Chem Allied Ltd</title>
      <link>https://www.ransomware.live/id/VW5pdmVyc2FsIFN0YXJjaC1DaGVtIEFsbGllZCBMdGRAZW1wZXJhZG9y</link>
      <guid isPermaLink="false">emperador/Universal Starch-Chem Allied Ltd/2026-09-09T11:52:14.589Z</guid>
      <pubDate>Wed, 09 Sep 2026 11:52:14 GMT</pubDate>
      <description>Ransomware group &quot;emperador&quot; listed Universal Starch-Chem Allied Ltd on its leak site. Sector: Manufacturing. Country: IN. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>emperador: BAYMER</title>
      <link>https://www.ransomware.live/id/QkFZTUVSQGVtcGVyYWRvcg==</link>
      <guid isPermaLink="false">emperador/BAYMER/2026-09-09T11:51:53.711Z</guid>
      <pubDate>Wed, 09 Sep 2026 11:51:53 GMT</pubDate>
      <description>Ransomware group &quot;emperador&quot; listed BAYMER on its leak site. Sector: Manufacturing. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>Storm: Technology Dynamics</title>
      <link>https://www.ransomware.live/id/VGVjaG5vbG9neSBEeW5hbWljc0BTdG9ybQ==</link>
      <guid isPermaLink="false">Storm/Technology Dynamics/2026-09-09T10:11:43.321Z</guid>
      <pubDate>Wed, 09 Sep 2026 10:11:43 GMT</pubDate>
      <description>Ransomware group &quot;Storm&quot; listed Technology Dynamics on its leak site. Sector: Technology. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>Storm: Flexmaster</title>
      <link>https://www.ransomware.live/id/RmxleG1hc3RlckBTdG9ybQ==</link>
      <guid isPermaLink="false">Storm/Flexmaster/2026-09-09T10:11:30.093Z</guid>
      <pubDate>Wed, 09 Sep 2026 10:11:30 GMT</pubDate>
      <description>Ransomware group &quot;Storm&quot; listed Flexmaster on its leak site. Sector: Manufacturing. Country: CA. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>Storm: Lowerys</title>
      <link>https://www.ransomware.live/id/TG93ZXJ5c0BTdG9ybQ==</link>
      <guid isPermaLink="false">Storm/Lowerys/2026-09-09T10:11:17.256Z</guid>
      <pubDate>Wed, 09 Sep 2026 10:11:17 GMT</pubDate>
      <description>Ransomware group &quot;Storm&quot; listed Lowerys on its leak site. Sector: Retail &amp; E-Commerce. Country: CA. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>Storm: Melitron</title>
      <link>https://www.ransomware.live/id/TWVsaXRyb25AU3Rvcm0=</link>
      <guid isPermaLink="false">Storm/Melitron/2026-09-09T10:11:02.628Z</guid>
      <pubDate>Wed, 09 Sep 2026 10:11:02 GMT</pubDate>
      <description>Ransomware group &quot;Storm&quot; listed Melitron on its leak site. Sector: Manufacturing. Country: CA. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>anubis: Gellibrand Support Services</title>
      <link>https://www.ransomware.live/id/R2VsbGlicmFuZCBTdXBwb3J0IFNlcnZpY2VzQGFudWJpcw==</link>
      <guid isPermaLink="false">anubis/Gellibrand Support Services/2026-09-09T04:54:18.301Z</guid>
      <pubDate>Wed, 09 Sep 2026 04:54:18 GMT</pubDate>
      <description>Ransomware group &quot;anubis&quot; listed Gellibrand Support Services on its leak site. Sector: Professional Services. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>play: Red Star Oil</title>
      <link>https://www.ransomware.live/id/UmVkIFN0YXIgT2lsQHBsYXk=</link>
      <guid isPermaLink="false">play/Red Star Oil/2026-09-08T20:46:45.441Z</guid>
      <pubDate>Tue, 08 Sep 2026 20:46:45 GMT</pubDate>
      <description>Ransomware group &quot;play&quot; listed Red Star Oil on its leak site. Sector: Energy &amp; Utilities. Country: RS. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>play: GT Distributors</title>
      <link>https://www.ransomware.live/id/R1QgRGlzdHJpYnV0b3JzQHBsYXk=</link>
      <guid isPermaLink="false">play/GT Distributors/2026-09-08T20:46:11.659Z</guid>
      <pubDate>Tue, 08 Sep 2026 20:46:11 GMT</pubDate>
      <description>Ransomware group &quot;play&quot; listed GT Distributors on its leak site. Sector: Retail &amp; E-Commerce. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>safepay: palmettoeyeinstitute.com</title>
      <link>https://www.ransomware.live/id/cGFsbWV0dG9leWVpbnN0aXR1dGUuY29tQHNhZmVwYXk=</link>
      <guid isPermaLink="false">safepay/palmettoeyeinstitute.com/2026-09-08T19:50:00.932Z</guid>
      <pubDate>Tue, 08 Sep 2026 19:50:00 GMT</pubDate>
      <description>Ransomware group &quot;safepay&quot; listed palmettoeyeinstitute.com on its leak site. Sector: Healthcare. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>safepay: reichenau.at</title>
      <link>https://www.ransomware.live/id/cmVpY2hlbmF1LmF0QHNhZmVwYXk=</link>
      <guid isPermaLink="false">safepay/reichenau.at/2026-09-08T19:49:27.179Z</guid>
      <pubDate>Tue, 08 Sep 2026 19:49:27 GMT</pubDate>
      <description>Ransomware group &quot;safepay&quot; listed reichenau.at on its leak site. Sector: Other. Country: AT. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>safepay: cannonpuntana.com</title>
      <link>https://www.ransomware.live/id/Y2Fubm9ucHVudGFuYS5jb21Ac2FmZXBheQ==</link>
      <guid isPermaLink="false">safepay/cannonpuntana.com/2026-09-08T19:48:52.730Z</guid>
      <pubDate>Tue, 08 Sep 2026 19:48:52 GMT</pubDate>
      <description>Ransomware group &quot;safepay&quot; listed cannonpuntana.com on its leak site. Country: AR. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>safepay: assiprime.it</title>
      <link>https://www.ransomware.live/id/YXNzaXByaW1lLml0QHNhZmVwYXk=</link>
      <guid isPermaLink="false">safepay/assiprime.it/2026-09-08T19:48:19.704Z</guid>
      <pubDate>Tue, 08 Sep 2026 19:48:19 GMT</pubDate>
      <description>Ransomware group &quot;safepay&quot; listed assiprime.it on its leak site. Sector: Professional Services. Country: IT. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>safepay: gayafores.es</title>
      <link>https://www.ransomware.live/id/Z2F5YWZvcmVzLmVzQHNhZmVwYXk=</link>
      <guid isPermaLink="false">safepay/gayafores.es/2026-09-08T19:47:46.415Z</guid>
      <pubDate>Tue, 08 Sep 2026 19:47:46 GMT</pubDate>
      <description>Ransomware group &quot;safepay&quot; listed gayafores.es on its leak site. Sector: Agriculture and Food Production. Country: ES. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>safepay: cenmar-manila.com</title>
      <link>https://www.ransomware.live/id/Y2VubWFyLW1hbmlsYS5jb21Ac2FmZXBheQ==</link>
      <guid isPermaLink="false">safepay/cenmar-manila.com/2026-09-08T19:47:12.037Z</guid>
      <pubDate>Tue, 08 Sep 2026 19:47:12 GMT</pubDate>
      <description>Ransomware group &quot;safepay&quot; listed cenmar-manila.com on its leak site. Sector: Manufacturing. Country: PH. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>safepay: gsngestion.es</title>
      <link>https://www.ransomware.live/id/Z3NuZ2VzdGlvbi5lc0BzYWZlcGF5</link>
      <guid isPermaLink="false">safepay/gsngestion.es/2026-09-08T19:46:37.545Z</guid>
      <pubDate>Tue, 08 Sep 2026 19:46:37 GMT</pubDate>
      <description>Ransomware group &quot;safepay&quot; listed gsngestion.es on its leak site. Sector: Professional Services. Country: ES. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>safepay: hbpro.pt</title>
      <link>https://www.ransomware.live/id/aGJwcm8ucHRAc2FmZXBheQ==</link>
      <guid isPermaLink="false">safepay/hbpro.pt/2026-09-08T19:46:02.891Z</guid>
      <pubDate>Tue, 08 Sep 2026 19:46:02 GMT</pubDate>
      <description>Ransomware group &quot;safepay&quot; listed hbpro.pt on its leak site. Sector: Professional Services. Country: PT. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>safepay: recoverycafe.org</title>
      <link>https://www.ransomware.live/id/cmVjb3ZlcnljYWZlLm9yZ0BzYWZlcGF5</link>
      <guid isPermaLink="false">safepay/recoverycafe.org/2026-09-08T18:46:15.049Z</guid>
      <pubDate>Tue, 08 Sep 2026 18:46:15 GMT</pubDate>
      <description>Ransomware group &quot;safepay&quot; listed recoverycafe.org on its leak site. Sector: Healthcare. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>safepay: mcnishsteel.com</title>
      <link>https://www.ransomware.live/id/bWNuaXNoc3RlZWwuY29tQHNhZmVwYXk=</link>
      <guid isPermaLink="false">safepay/mcnishsteel.com/2026-09-08T18:45:28.152Z</guid>
      <pubDate>Tue, 08 Sep 2026 18:45:28 GMT</pubDate>
      <description>Ransomware group &quot;safepay&quot; listed mcnishsteel.com on its leak site. Sector: Manufacturing. Country: CA. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>direwolf: Sales Boomerang</title>
      <link>https://www.ransomware.live/id/U2FsZXMgQm9vbWVyYW5nQGRpcmV3b2xm</link>
      <guid isPermaLink="false">direwolf/Sales Boomerang/2026-09-08T17:27:16.548Z</guid>
      <pubDate>Tue, 08 Sep 2026 17:27:16 GMT</pubDate>
      <description>Ransomware group &quot;direwolf&quot; listed Sales Boomerang on its leak site. Sector: Professional Services. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>Panzer: Financière d&#39;Uzès</title>
      <link>https://www.ransomware.live/id/RmluYW5jacOocmUgZCdVesOoc0BQYW56ZXI=</link>
      <guid isPermaLink="false">Panzer/Financière d&#39;Uzès/2026-09-08T16:52:39.852Z</guid>
      <pubDate>Tue, 08 Sep 2026 16:52:39 GMT</pubDate>
      <description>Ransomware group &quot;Panzer&quot; listed Financière d&#39;Uzès on its leak site. Sector: Financial Services. Country: FR. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>AuditTeam: bu***en</title>
      <link>https://www.ransomware.live/id/YnUqKiplbkBBdWRpdFRlYW0=</link>
      <guid isPermaLink="false">AuditTeam/bu***en/2026-09-08T16:50:21.630Z</guid>
      <pubDate>Tue, 08 Sep 2026 16:50:21 GMT</pubDate>
      <description>Ransomware group &quot;AuditTeam&quot; listed bu***en on its leak site. Country: RU. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>chaos: copeplastics.com</title>
      <link>https://www.ransomware.live/id/Y29wZXBsYXN0aWNzLmNvbUBjaGFvcw==</link>
      <guid isPermaLink="false">chaos/copeplastics.com/2026-09-08T16:25:38.035Z</guid>
      <pubDate>Tue, 08 Sep 2026 16:25:38 GMT</pubDate>
      <description>Ransomware group &quot;chaos&quot; listed copeplastics.com on its leak site. Sector: Manufacturing. Country: GB. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>lockbit5: fdcputman.nl</title>
      <link>https://www.ransomware.live/id/ZmRjcHV0bWFuLm5sQGxvY2tiaXQ1</link>
      <guid isPermaLink="false">lockbit5/fdcputman.nl/2026-09-08T15:36:47.464Z</guid>
      <pubDate>Tue, 08 Sep 2026 15:36:47 GMT</pubDate>
      <description>Ransomware group &quot;lockbit5&quot; listed fdcputman.nl on its leak site. Sector: Other. Country: NL. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>lockbit5: contreras.com.ar</title>
      <link>https://www.ransomware.live/id/Y29udHJlcmFzLmNvbS5hckBsb2NrYml0NQ==</link>
      <guid isPermaLink="false">lockbit5/contreras.com.ar/2026-09-08T15:36:03.996Z</guid>
      <pubDate>Tue, 08 Sep 2026 15:36:03 GMT</pubDate>
      <description>Ransomware group &quot;lockbit5&quot; listed contreras.com.ar on its leak site. Country: AR. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>direwolf: EMS1R</title>
      <link>https://www.ransomware.live/id/RU1TMVJAZGlyZXdvbGY=</link>
      <guid isPermaLink="false">direwolf/EMS1R/2026-09-08T15:32:19.650Z</guid>
      <pubDate>Tue, 08 Sep 2026 15:32:19 GMT</pubDate>
      <description>Ransomware group &quot;direwolf&quot; listed EMS1R on its leak site. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>akira: Brent Electric</title>
      <link>https://www.ransomware.live/id/QnJlbnQgRWxlY3RyaWNAYWtpcmE=</link>
      <guid isPermaLink="false">akira/Brent Electric/2026-09-08T14:22:52.626Z</guid>
      <pubDate>Tue, 08 Sep 2026 14:22:52 GMT</pubDate>
      <description>Ransomware group &quot;akira&quot; listed Brent Electric on its leak site. Sector: Energy &amp; Utilities. Country: GB. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>akira: Brentwood Country Club</title>
      <link>https://www.ransomware.live/id/QnJlbnR3b29kIENvdW50cnkgQ2x1YkBha2lyYQ==</link>
      <guid isPermaLink="false">akira/Brentwood Country Club/2026-09-08T13:54:45.456Z</guid>
      <pubDate>Tue, 08 Sep 2026 13:54:45 GMT</pubDate>
      <description>Ransomware group &quot;akira&quot; listed Brentwood Country Club on its leak site. Sector: Hospitality. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>akira: CreateASoft</title>
      <link>https://www.ransomware.live/id/Q3JlYXRlQVNvZnRAYWtpcmE=</link>
      <guid isPermaLink="false">akira/CreateASoft/2026-09-08T13:54:25.720Z</guid>
      <pubDate>Tue, 08 Sep 2026 13:54:25 GMT</pubDate>
      <description>Ransomware group &quot;akira&quot; listed CreateASoft on its leak site. Sector: Technology. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>Eclipse: The Zhou Law Group</title>
      <link>https://www.ransomware.live/id/VGhlIFpob3UgTGF3IEdyb3VwQEVjbGlwc2U=</link>
      <guid isPermaLink="false">Eclipse/The Zhou Law Group/2026-09-08T13:51:47.484Z</guid>
      <pubDate>Tue, 08 Sep 2026 13:51:47 GMT</pubDate>
      <description>Ransomware group &quot;Eclipse&quot; listed The Zhou Law Group on its leak site. Sector: Professional Services. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>Eclipse: TTG Asia Media</title>
      <link>https://www.ransomware.live/id/VFRHIEFzaWEgTWVkaWFARWNsaXBzZQ==</link>
      <guid isPermaLink="false">Eclipse/TTG Asia Media/2026-09-08T13:51:14.025Z</guid>
      <pubDate>Tue, 08 Sep 2026 13:51:14 GMT</pubDate>
      <description>Ransomware group &quot;Eclipse&quot; listed TTG Asia Media on its leak site. Sector: Hospitality. Country: SG. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>qilin: Alaska Electrical Apprenticeship</title>
      <link>https://www.ransomware.live/id/QWxhc2thIEVsZWN0cmljYWwgQXBwcmVudGljZXNoaXBAcWlsaW4=</link>
      <guid isPermaLink="false">qilin/Alaska Electrical Apprenticeship/2026-09-08T13:27:02.593Z</guid>
      <pubDate>Tue, 08 Sep 2026 13:27:02 GMT</pubDate>
      <description>Ransomware group &quot;qilin&quot; listed Alaska Electrical Apprenticeship on its leak site. Sector: Education. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>AuditTeam: Wi***IT</title>
      <link>https://www.ransomware.live/id/V2kqKipJVEBBdWRpdFRlYW0=</link>
      <guid isPermaLink="false">AuditTeam/Wi***IT/2026-09-08T11:20:28.759Z</guid>
      <pubDate>Tue, 08 Sep 2026 11:20:28 GMT</pubDate>
      <description>Ransomware group &quot;AuditTeam&quot; listed Wi***IT on its leak site. Sector: Technology. Country: UA. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>blacknevas: Mefa Group www.mefagroup.com.tr / MEFA Endüstri www.mefaendustri.com / and (Efachem, Eco...</title>
      <link>https://www.ransomware.live/id/TWVmYSBHcm91cCB3d3cubWVmYWdyb3VwLmNvbS50ciAvIE1FRkEgRW5kw7xzdHJpIHd3dy5tZWZhZW5kdXN0cmkuY29tIC8gYW5kIChFZmFjaGVtLCBFY28uLi5AYmxhY2tuZXZhcw==</link>
      <guid isPermaLink="false">blacknevas/Mefa Group www.mefagroup.com.tr / MEFA Endüstri www.mefaendustri.com / and (Efachem, Eco.../2026-09-08T07:23:58.260Z</guid>
      <pubDate>Tue, 08 Sep 2026 07:23:58 GMT</pubDate>
      <description>Ransomware group &quot;blacknevas&quot; listed Mefa Group www.mefagroup.com.tr / MEFA Endüstri www.mefaendustri.com / and (Efachem, Eco... on its leak site. Sector: Manufacturing. Country: TR. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>rhysida: SAD&#39;S Interim</title>
      <link>https://www.ransomware.live/id/U0FEJ1MgSW50ZXJpbUByaHlzaWRh</link>
      <guid isPermaLink="false">rhysida/SAD&#39;S Interim/2026-09-08T06:02:10.597Z</guid>
      <pubDate>Tue, 08 Sep 2026 06:02:10 GMT</pubDate>
      <description>Ransomware group &quot;rhysida&quot; listed SAD&#39;S Interim on its leak site. Sector: Professional Services. Country: FR. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>AuditTeam: pa***op</title>
      <link>https://www.ransomware.live/id/cGEqKipvcEBBdWRpdFRlYW0=</link>
      <guid isPermaLink="false">AuditTeam/pa***op/2026-09-08T04:50:22.809Z</guid>
      <pubDate>Tue, 08 Sep 2026 04:50:22 GMT</pubDate>
      <description>Ransomware group &quot;AuditTeam&quot; listed pa***op on its leak site. Country: RU. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>Dark Project: MEI Architects</title>
      <link>https://www.ransomware.live/id/TUVJIEFyY2hpdGVjdHNARGFyayBQcm9qZWN0</link>
      <guid isPermaLink="false">Dark Project/MEI Architects/2026-09-07T22:20:59.692Z</guid>
      <pubDate>Mon, 07 Sep 2026 22:20:59 GMT</pubDate>
      <description>Ransomware group &quot;Dark Project&quot; listed MEI Architects on its leak site. Sector: Professional Services. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>thegentlemen: Hollard Insurance Group</title>
      <link>https://www.ransomware.live/id/SG9sbGFyZCBJbnN1cmFuY2UgR3JvdXBAdGhlZ2VudGxlbWVu</link>
      <guid isPermaLink="false">thegentlemen/Hollard Insurance Group/2026-09-07T21:56:38.361Z</guid>
      <pubDate>Mon, 07 Sep 2026 21:56:38 GMT</pubDate>
      <description>Ransomware group &quot;thegentlemen&quot; listed Hollard Insurance Group on its leak site. Sector: Financial Services. Country: ZA. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>thegentlemen: Drogueria Saporiti Sacifia</title>
      <link>https://www.ransomware.live/id/RHJvZ3VlcmlhIFNhcG9yaXRpIFNhY2lmaWFAdGhlZ2VudGxlbWVu</link>
      <guid isPermaLink="false">thegentlemen/Drogueria Saporiti Sacifia/2026-09-07T21:56:17.591Z</guid>
      <pubDate>Mon, 07 Sep 2026 21:56:17 GMT</pubDate>
      <description>Ransomware group &quot;thegentlemen&quot; listed Drogueria Saporiti Sacifia on its leak site. Sector: Retail &amp; E-Commerce. Country: AR. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>thegentlemen: Mutant</title>
      <link>https://www.ransomware.live/id/TXV0YW50QHRoZWdlbnRsZW1lbg==</link>
      <guid isPermaLink="false">thegentlemen/Mutant/2026-09-07T21:55:57.479Z</guid>
      <pubDate>Mon, 07 Sep 2026 21:55:57 GMT</pubDate>
      <description>Ransomware group &quot;thegentlemen&quot; listed Mutant on its leak site. Sector: Other. Country: BR. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>thegentlemen: University of San Francisco</title>
      <link>https://www.ransomware.live/id/VW5pdmVyc2l0eSBvZiBTYW4gRnJhbmNpc2NvQHRoZWdlbnRsZW1lbg==</link>
      <guid isPermaLink="false">thegentlemen/University of San Francisco/2026-09-07T21:55:37.369Z</guid>
      <pubDate>Mon, 07 Sep 2026 21:55:37 GMT</pubDate>
      <description>Ransomware group &quot;thegentlemen&quot; listed University of San Francisco on its leak site. Sector: Education. Country: US. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>thegentlemen: Nile Projects Trading</title>
      <link>https://www.ransomware.live/id/TmlsZSBQcm9qZWN0cyBUcmFkaW5nQHRoZWdlbnRsZW1lbg==</link>
      <guid isPermaLink="false">thegentlemen/Nile Projects Trading/2026-09-07T21:55:16.561Z</guid>
      <pubDate>Mon, 07 Sep 2026 21:55:16 GMT</pubDate>
      <description>Ransomware group &quot;thegentlemen&quot; listed Nile Projects Trading on its leak site. Sector: Other. Country: EG. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>thegentlemen: Chip7</title>
      <link>https://www.ransomware.live/id/Q2hpcDdAdGhlZ2VudGxlbWVu</link>
      <guid isPermaLink="false">thegentlemen/Chip7/2026-09-07T21:54:56.429Z</guid>
      <pubDate>Mon, 07 Sep 2026 21:54:56 GMT</pubDate>
      <description>Ransomware group &quot;thegentlemen&quot; listed Chip7 on its leak site. Sector: Technology. Country: PT. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
    <item>
      <title>thegentlemen: Sharp Office</title>
      <link>https://www.ransomware.live/id/U2hhcnAgT2ZmaWNlQHRoZWdlbnRsZW1lbg==</link>
      <guid isPermaLink="false">thegentlemen/Sharp Office/2026-09-07T21:54:35.623Z</guid>
      <pubDate>Mon, 07 Sep 2026 21:54:35 GMT</pubDate>
      <description>Ransomware group &quot;thegentlemen&quot; listed Sharp Office on its leak site. Sector: Professional Services. Country: AU. Claims are made by criminal extortion groups and are unverified.</description>
    </item>
  </channel>
</rss>
