Ransomware victim disclosure
← All victimsRecsa
Claimed by Qilin · listed 7 days ago
Status timeline
- ListedJul 22, 2026
- Data leakeddate unknown
At a glance
- Group
- Qilin
- Status
- Data leaked
- Country
- Costa Rica
- Listed on leak site
- Jul 22, 2026
About the victim
AI dossier — public-source company profileRecsa is a company based in Costa Rica (CR) with an online presence at www.recsa.com. No further public information is available.
Attack summary
Severity: low — Data has been published but no leak post content, proof files, or specifics on data sensitivity are available for verification. Without evidence of what was exfiltrated or operational impact, confidence in severity assessment is low.The Qilin group claims to have attacked Recsa and published data, though specific details of the attack method (encryption, exfiltration, or both) and data categories are not disclosed in the available leak post.
What the group claims
N/A
Sources
Source
Indexed 7 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

