Ransomware victim disclosure
← All victimsNSE Insurance Agencies
Claimed by chaos · listed 5 months ago
Status timeline
- Listed
Dec 11, 2025
- Data leaked
At a glance
- Group
- chaos
- Status
- Data leaked
- Country
- United States
- Sector
- Financial Services
- Listed on leak site
- Dec 11, 2025
About the victim
AI dossier — public-source company profileNSE Insurance Agencies, Inc. is an independent insurance agency established in 1912, headquartered in Exeter, California with an additional office in Tulare, CA. The agency offers a full range of personal and commercial insurance products — including auto, home, life, health, farm, and business coverage — to individuals and business owners across Tulare, Kings, and Kern counties. As a member of United Valley, the agency has access to over 100 insurance carriers.
- Industry
- Independent Insurance Agency
- Address
- 160 S D St. Exeter, CA 93221 / 1687 E Prosperity Ave Suite A, Tulare, CA 93274
- Founded
- 1912
Attack summary
Severity: high — Data has been published by the threat actor against an insurance agency that holds regulated personal and financial PII (policy data, client records, health/life insurance information) for individuals and businesses; insurance data constitutes sensitive financial and potentially medical information at scale.The Chaos ransomware group claims to have attacked NSE Insurance Agencies and has published data (disclosed status: data_published), though no specific ransom amount or data size was stated in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Client personal information
- Insurance policy records
- Business owner records
- Employee directory data
- Contact and account information
What the group claims
NSE Insurance Agencies, Inc. is an independent insurance agency established in 1912, providing a comprehensive range of insurance services to individuals and business owners in Tulare, Kings, and Kern counties.
Sources
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
