Section9 — every breach we're tracking
Running log of incidents attributed to or claimed by Section9 in public reporting, with what was exposed and what victims should do. Updated as new incidents are ingested.
Groups like Section9 steal data first and extort second — and the stolen records rarely stay private. Once a victim organization's data hits a leak site, the personal details inside (names, emails, phones, addresses) get scraped into the same broker-and-dump ecosystem every doxxer searches. If an organization you've used appears below, treat your data as circulating.
Tracked incidents
****.com.pa Listed by Section9 Ransomware Group
TRAVEL…
********.com.jp Listed by Section9 Ransomware Group
SOFTWARE…
******.net.br Listed by Section9 Ransomware Group
TAX…
********.com.br Listed by Section9 Ransomware Group
MINING…
*****.com.pt Listed by Section9 Ransomware Group
UNIVERSITY…
********.com.uy Listed by Section9 Ransomware Group
FOOD & SERVICES…
****.fr Listed by Section9 Ransomware Group
RETAIL…
********.com Listed by Section9 Ransomware Group
NEWS…
******.com.se Listed by Section9 Ransomware Group
HEALTHCARE…
****.com.mc Listed by Section9 Ransomware Group
TRAVEL & TOURISM…
*****.ind.br Listed by Section9 Ransomware Group
AGRICULTURE…
********** Listed by Section9 Ransomware Group
CYBERSECURITY…
*****.com.cn Listed by Section9 Ransomware Group
FINANCE…
Your email leaked. See who’s selling your address.
Nobody can unleak a breach. But the people-search sites selling your address because of it? Those come down. The free scan shows you which ones have you, in 15 seconds. Then you pick what fits.