Ransomware victim disclosure
← All victimsCLOVER.COM
Claimed by Clop · listed 5 days ago
Status timeline
- ListedAug 12, 2026
- Data leakeddate unknown
At a glance
- Group
- Clop
- Status
- Data leaked
- Country
- United States
- Sector
- Retail & E-Commerce
- Listed on leak site
- Aug 12, 2026
About the victim
AI dossier — public-source company profileClover is a POS system and credit card reader provider serving small to mid-sized businesses. The platform offers payment processing and operational tools designed to increase sales and streamline business operations.
- Industry
- Point-of-Sale (POS) Systems & Payment Processing
Attack summary
Severity: low — No operational impact confirmed, no data inventory specified, no proof files advertised, and the leak post is a generic placeholder with no actionable claim details.The ransomware group Clop claims to have targeted Clover, but the leak post is incomplete and contains only a generic queue/redirect message with no substantive detail about the attack method, data exfiltration, or proof.
Original description
AI-summarised, not from the leak postClover.com is a US-based financial technology company that provides point-of-sale systems and business management solutions primarily for small and medium-sized businesses. Operated under Fiserv, Clover offers hardware terminals, software, and payment processing services. Its platform supports inventory management, employee tracking, customer engagement, and sales analytics, making it a comprehensive commerce solution across the retail and hospitality industries.
The leak post
captured from the group's siteYou have been placed in a queue, awaiting forwarding to the platform. Please do not refresh the page, you will be automatically redirected.
Sources
- Victim siteCLOVER.COM
- Leak posthttp://santat7kpllt6iyvqbr7q4amdv6dzrh6paatvyrzl7ry3zm72zigf4ad.onion/
Source
Indexed 5 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

