Ransomware victim disclosure
← All victimsShare & Harris LLC
listed as shareharris.com · Claimed by Threeam · listed 3 years ago
Status timeline
- ListedDec 12, 2023
- Data leakeddate unknown
At a glance
- Group
- Threeam
- Status
- Data leaked
- Country
- United States
- Sector
- Business Services
- Listed on leak site
- Dec 12, 2023
- Ransom demanded
- $1M
About the victim
AI dossier — public-source company profileShare & Harris LLC is a small accounting firm headquartered in East Brunswick, New Jersey. The company employs between 11 and 20 people and generates estimated annual revenue of $1M–$5M. It provides accounting-related professional services to clients in the United States.
- Industry
- Accounting & Tax Services
- Address
- East Brunswick, New Jersey 08816, United States
- Employees
- 11-20
Attack summary
Severity: high — An accounting firm holds sensitive financial and tax records for clients, which constitutes regulated and sensitive PII/financial data. The data_published status indicates confirmed exfiltration and public disclosure, elevating severity beyond medium despite the small company size.The Threeam ransomware group claims to have attacked Share & Harris LLC and has published data (disclosed status: data_published), with a stated ransom demand of $1M. No specific data volume was listed, but the post implies exfiltration and/or encryption of company data.
Data the group says was taken
AI dossier — extracted from the leak post- Financial records
- Client accounting data
- Employee information
- Business correspondence
What the group claims
Share & Harris LLC is a company that operates in the Accounting industry. It employs 11-20 people and has $1M-$5M of revenue. The company is headquartered in East Brunswick, New Jersey, 08816, United States
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

