Ransomware victim disclosure
← All victimsMerge
Claimed by Direwolf · listed 7 days ago
Status timeline
- ListedAug 10, 2026
- Data leakeddate unknown
At a glance
- Group
- Direwolf
- Status
- Data leaked
- Country
- United States
- Sector
- Technology
- Listed on leak site
- Aug 10, 2026
About the victim
AI dossier — public-source company profileMerge is a financial technology company providing stablecoin payment infrastructure for cross-border enterprise payments. They offer APIs, multi-currency accounts, and settlement services in 100+ countries, serving fintechs, banks, marketplaces, and financial institutions.
- Industry
- Financial Technology & Stablecoin Infrastructure
Attack summary
Severity: high — Merge handles sensitive financial payment infrastructure and multi-currency accounts for enterprise clients globally. Compromise of such a platform poses significant risk to downstream customers and financial transaction integrity, even without confirmed exfiltration details.The direwolf group claims to have compromised Merge and published data. No specific details on encryption, exfiltration method, or data scope are provided in the leak post excerpt.
Data the group says was taken
AI dossier — extracted from the leak post- Financial records
- Payment infrastructure data
- Customer/account information
What the group claims
Financial
Sources
Source
Indexed 7 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

