Ransomware victim disclosure
← All victimsTRUSTPAYMENTS.COM
Claimed by Clop · listed 5 months ago
Status timeline
- ListedJan 25, 2026
- Data leakeddate unknown
At a glance
- Group
- Clop
- Status
- Data leaked
- Country
- United Kingdom
- Sector
- Financial Services
- Listed on leak site
- Jan 25, 2026
About the victim
AI dossier — public-source company profileTrust Payments is a UK-based payment service provider offering omnichannel commerce solutions including online payment gateways, point-of-sale systems, acquiring, mobile payments, and loyalty services. They serve 20,000+ customers globally across retail, hospitality, gaming, financial services, travel, and other sectors.
- Industry
- Payment Processing & Merchant Acquiring
Attack summary
Severity: high — Confirmed data publication by Clop for a major payment processor handling sensitive financial and customer transaction data for 20,000+ businesses. Exfiltration of payment infrastructure data poses significant risk to downstream merchants and customers, even without specific proof counts disclosed.The Clop group claims to have attacked Trust Payments and published exfiltrated data. The specific data compromised and operational impact are not detailed in the available post excerpt.
Data the group says was taken
AI dossier — extracted from the leak post- customer payment data
- merchant account information
- transaction records
- business customer data
Original description
AI-summarised, not from the leak postTRUSTPAYMENTS.COM is a global payments company. They specialize in providing engaging and flexible payment solutions for businesses, ranging from startups to enterprises. They offer a range of services including online payment gateways, merchant accounts, risk & fraud management, payment processing, multi-currency processing, and more. Their aim is to assist businesses in reaching the global market securely and easily.
Sources
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

