Ransomware victim disclosure
← All victimsNetim Company
Claimed by DYSPHOR1A · listed 8 days ago
Status timeline
- ListedAug 23, 2026
- Data leakeddate unknown
At a glance
- Group
- DYSPHOR1A
- Status
- Data leaked
- Country
- France
- Sector
- Technology
- Listed on leak site
- Aug 23, 2026
About the victim
AI dossier — public-source company profileNetim is a French ICANN-accredited domain name registrar and web hosting provider offering over 1,300 gTLDs and ccTLDs, email hosting, SSL certificates, and reseller services. The company operates a multi-service platform for domain registration, transfer, web hosting, and email solutions.
- Industry
- Domain Name Registrar & Web Hosting
Attack summary
Severity: critical — Confirmed exfiltration of multiple sensitive data categories including payment processing databases, customer PII at scale (registrar serving thousands of customers), and source code representing significant business assets. A domain registrar breach exposes infrastructure security across all customer domains.DYSPHOR1A claims full compromise of Netim's internal systems, including source code, infrastructure IPs, payment processing databases, customer personally identifiable information (PII), and internal business data.
Data the group says was taken
AI dossier — extracted from the leak post- source code
- infrastructure IPs
- payment processing databases
- customer PII
- internal business data
What the group claims
Netim is a French domain name registrar and web hosting provider. Full compromise of internal systems — source code, infrastructure IPs, payment processing databases, customer PII, and internal business data.
Sources
- Victim sitenetim.com
Source
Indexed 8 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

