Ransomware victim disclosure
← All victimsRichey Tax Solutions
Claimed by Akira · listed 4 months ago
Status timeline
- ListedFeb 4, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Sector
- Financial Services
- Listed on leak site
- Feb 4, 2026
- Data size
- 25 GB
About the victim
AI dossier — public-source company profileRichey Tax Solutions LLC is a small professional services firm based in Tucson, Arizona, specializing in small business consulting, income tax preparation, and retirement and tax planning. The firm targets retirees, business owners, executives, and independent professionals, positioning itself on professional, experienced, and affordable services.
- Industry
- Tax Preparation & Small Business Consulting
- Address
- Tucson, AZ, United States
Attack summary
Severity: critical — Confirmed exfiltration of highly regulated PII at scale — including SSNs, government-issued identity documents, and financial records belonging to individual clients — from a tax preparation firm whose client base is inherently sensitive. Data has been declared for imminent publication.Akira claims to have exfiltrated approximately 25 GB of corporate data and states the company refused to negotiate; the group asserts the data includes SSNs, passports, driver's licenses, birth and death certificates, financial records, correspondence, legal files, and other confidential documents.
Data the group says was taken
AI dossier — extracted from the leak post- Social Security Numbers (SSNs)
- Passports
- Driver's licenses
- Death certificates
- Birth certificates
- Financial records
- Correspondence
- Legal files
- Confidential business files
What the group claims
Richey Tax Solutions LLC, based in Tucson, AZ, specializes in sma ll business consulting, income tax preparation, and retirement an d tax planning. The firm is known for its professional, experienc ed, and affordable services tailored for retirees, business owner s, executives, and independent professionals. We will upload 25gb of corporate data soon. They refused to save client's data. SSNs, passports, DLs, death/birth certs, financial s information, correspondence and other confidential files, legal files, etc.
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

