Ransomware victim disclosure
← All victimsETNA Software
Claimed by Eclipse · listed 3 hours ago
Status timeline
- ListedAug 27, 2026
- Data leakeddate unknown
At a glance
- Group
- Eclipse
- Status
- Data leaked
- Country
- Italy
- Sector
- Technology
- Listed on leak site
- Aug 27, 2026
About the victim
AI dossier — public-source company profileETNA Software is a fintech company providing white-label trading and wealth management platforms for broker-dealers, RIAs, and financial advisors. With 22 years of experience, $2 billion+ in assets under management across 35+ clients, ETNA offers cloud-based solutions including trading platforms, financial advisor software, back-office tools, and compliance automation.
- Industry
- Financial Technology (FinTech) - Trading & Wealth Management Platforms
Attack summary
Severity: high — Confirmed data exfiltration from a financial technology company serving broker-dealers and financial advisors, with access to sensitive client data, trading systems, and financial records across a regulated sector. The company manages $2B+ in assets, indicating significant exposure scope.The Eclipse group claims to have compromised ETNA Software and published exfiltrated data. The leak post does not specify what data categories were stolen or the scope of exfiltration.
Data the group says was taken
AI dossier — extracted from the leak post- Company databases
- Client information
- Trading platform data
- Financial records
What the group claims
ETNA Software is a company that provides white-label online trading solutions for brokers and FinTech firms, including mobile and web trading platforms. Their products are designed to help retail broker-dealers launch trading capabilities efficiently and cost-effectively.
Sources
Source
Indexed 3 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

