On October 14, 2025, French recruitment agency Urban Linker appeared on the leak site of the qilin ransomware group. The company, which places digital and tech professionals, is claimed to have had internal files exfiltrated after a ransomware attack. Anyone whose resume, employment records, or personal details passed through Urban Linker in the past eight years may now have that information exposed.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Urban Linker
Get alerted the next time Urban Linker files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Urban Linker’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates that qilin listed Urban Linker on its data leak portal with samples of stolen material. The recruitment firm operates four offices across France — Paris, Lyon, Toulouse, and Bordeaux — and has been active for more than eight years. Available reporting describes the exposed material as internal files exfiltrated during the ransomware incident. The exact number of individuals affected remains unknown, but recruitment databases typically contain names, contact details, employment histories, salary expectations, and sometimes copies of identity documents.
Industry research from sources such as DoxxScan™ continuous monitoring indicates that recruitment and staffing agencies have become frequent targets because their databases aggregate personal data from thousands of job seekers and placed candidates.
Why This Matters for You and Your Family
If you or anyone in your household has applied for a tech or digital role through a French recruiter in recent years, your information could be in the stolen files. Names, email addresses, phone numbers, work histories, and home addresses are valuable to identity thieves, scammers, and doxxers. Once criminals obtain these details they can attempt account takeovers, file fraudulent tax returns, or sell the information on underground forums.