Ransomware victim disclosure
← All victimsXL Africa Group
Claimed by 0DAY · listed 2 days ago
Status timeline
- ListedAug 16, 2026
Current state: Listed for ransom
At a glance
- Group
- 0DAY
- Status
- Listed for ransom
- Listed on leak site
- Aug 16, 2026
About the victim
AI dossier — public-source company profileXL Africa Group is an outsourcing services provider operating across Africa, offering HR, logistics, security, and cash management solutions to other companies.
- Industry
- Business Services & Outsourcing
Attack summary
Severity: low — Listing only with no proof files, no attack details, no data inventory specifics, and no operational impact stated. Appears to be an announcement or directory listing rather than a substantive breach disclosure.The 0DAY group lists XL Africa Group in a leak post alongside other entities (GoKids, XGenize, Braincell), but provides no specific details about the nature of the attack, data exfiltrated, or operational impact on XL Africa Group itself.
What the group claims
XL Africa Group provides outsourcing services like HR, logistics, security, and cash management to other companies across Africa
The leak post
captured from the group's siteSYS TIME: 2026-08-16 | 02:58:36 AM GoKids is a brand that creates educational mobile apps, games, and content for toddlers (ages 2-5) XGenize is an AI development company that builds custom automation tools and AI assistants for businesses Braincell Braincell.sa rfcargo.braincell.solutions rf.braincell.solutions governata.com Braincell is a Saudi technology startup that optimizes business decision-making through AI-powered automation and data integration XL Africa Group provides outsourcing services like HR, logistics, security, and cash management to other companies across Africa.
Screenshot of the leak post

Sources
Source
Indexed 2 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

