Ransomware victim disclosure
← All victimsPayUp
Claimed by Direwolf · listed 7 hours ago
Status timeline
- ListedAug 19, 2026
- Data leakeddate unknown
At a glance
- Group
- Direwolf
- Status
- Data leaked
- Sector
- Financial Services
- Listed on leak site
- Aug 19, 2026
About the victim
AI dossier — public-source company profilePayUp is a vendor payment automation platform designed for property management companies. It automates accounts payable workflows by processing payments via ACH, digital checks, and physical checks, integrating with property management systems and providing real-time vendor status updates. The company is part of Rex Tech's AP automation platform.
- Industry
- Financial Software & Payment Automation
- Address
- Austin, TX
Attack summary
Severity: medium — Data has been published (disclosed_status: data_published), indicating confirmed exfiltration. However, no specific data types, volumes, or proof files are enumerated in the leak post. PayUp's access to vendor and property management data (invoices, payment histories, vendor details) represents moderate sensitivity but is neither confirmed PII at scale nor regulated financial records of end-users.The direwolf group claims to have compromised PayUp. The leak post provides minimal detail; the group has published data but no specific claims about encryption, exfiltration scope, or data type are stated in the disclosed material.
What the group claims
Financial Software
Sources
Source
Indexed 7 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

