Ransomware victim disclosure
← All victimsInfoSync
listed as issvc.com · Claimed by Chaos · listed 7 days ago
Status timeline
- ListedJul 22, 2026
- Data leakeddate unknown
At a glance
- Group
- Chaos
- Status
- Data leaked
- Country
- Singapore
- Sector
- Technology
- Listed on leak site
- Jul 22, 2026
About the victim
AI dossier — public-source company profileInfoSync provides outsourced accounting, payroll, HR, and operational reporting services specifically for multi-unit restaurant businesses and other professional service firms. They serve over 100 brands across 11,000+ locations, positioning themselves as an administrative solution to free clients from backend operations.
- Industry
- Business Process Outsourcing (BPO) - Accounting, Payroll & HR Services
- Employees
- 51-200
Attack summary
Severity: critical — Confirmed exfiltration of 262 GB of data from a financial/HR BPO firm serving 100+ restaurant brands. Dataset includes sensitive financial records, payroll, PII, and confidential business information across thousands of locations. High-scale exposure of regulated financial and employee data.The Chaos group claims to have exfiltrated 262 GB of confidential data from InfoSync. The group issued a 24-hour deadline for ransom negotiation before publishing the complete dataset publicly; the disclosure status indicates data has now been published.
Data the group says was taken
AI dossier — extracted from the leak post- Financial records
- Payroll data
- Client accounting information
- HR and benefits records
- Operational reporting data
- Client confidential datasets
What the group claims
issvc.com Official Notice to Management and Stakeholders The time window has expired. Exactly 24 hours remain until the final deadline. If an agreement is not reached by the end of this period, the complete confidential dataset totaling 262 GB will be published into the public domain. Compromised…
Sources
Source
Indexed 7 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

