Ransomware victim disclosure
← All victimsFISERV.COM
Claimed by Clop · listed 5 days ago
Status timeline
- ListedAug 12, 2026
- Data leakeddate unknown
At a glance
- Group
- Clop
- Status
- Data leaked
- Country
- United States
- Sector
- Financial Services
- Listed on leak site
- Aug 12, 2026
About the victim
AI dossier — public-source company profileFiserv is a global fintech company serving financial institutions, merchants, fintechs, and enterprises with integrated banking, commerce, and payments solutions. The company powers digital banking platforms, payment systems, and omnichannel commerce for banks, credit unions, merchants, and government entities at scale.
- Industry
- Financial Services Technology & Payments
Attack summary
Severity: low — No proof files, data samples, or operational impact described. Post contains only a placeholder/redirect message with no verifiable claim of data exfiltration or encryption.The leak post provides no substantive claim details—only a generic queuing message. No confirmation of encryption, exfiltration, or specific data compromise is stated in the available post excerpt.
Original description
AI-summarised, not from the leak postFiserv is a leading American financial technology company headquartered in Milwaukee, Wisconsin. It provides payment processing, banking software, and financial services technology to banks, credit unions, merchants, and other financial institutions worldwide. Its services include core banking systems, digital payments, card processing, and data analytics. Fiserv operates globally and is listed on the NASDAQ stock exchange.
The leak post
captured from the group's siteYou have been placed in a queue, awaiting forwarding to the platform. Please do not refresh the page, you will be automatically redirected.
Sources
- Victim siteFISERV.COM
- Leak posthttp://santat7kpllt6iyvqbr7q4amdv6dzrh6paatvyrzl7ry3zm72zigf4ad.onion/
Source
Indexed 5 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

