Ransomware victim disclosure
← All victimsSalesfloor
Claimed by lapsus$ · listed 3 months ago
Status timeline
- Listed
Mar 1, 2026
- Data leaked
At a glance
- Group
- lapsus$
- Status
- Data leaked
- Country
- Canada
- Sector
- Technology
- Listed on leak site
- Mar 1, 2026
About the victim
AI dossier — public-source company profileSalesfloor is a Canadian software company that provides a mobile SaaS platform enabling retail store associates to connect with and serve online shoppers through personalized engagement, social selling, and clienteling tools. Its platform is used by major retailers globally to bridge in-store expertise with e-commerce channels.
- Industry
- Retail Technology & SaaS
Attack summary
Severity: medium — The disclosure status is 'data_published', indicating some data release has occurred, but no details on data type, volume, or sensitivity are available. Without evidence of regulated or sensitive data (PII at scale, financial, etc.), severity cannot be elevated to high or critical.Lapsus$ claims to have compromised Salesfloor and has published data from the attack; however, no specific details about encryption, exfiltration volume, or the nature of the exposed data are provided in the leak post.
Original description
AI-summarised, not from the leak postSalesfloor is a software company that provides a mobile platform designed to connect retail store associates with online shoppers for a personalized customer experience. It empowers store associates to create and maintain personalized relationships through social selling, online engagement and clienteling tactics. Its services are used by leading retailers around the world.
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
