Ransomware victim disclosure
← All victimsM1xchange
Claimed by Worldleaks · listed 4 days ago
Status timeline
- ListedJun 9, 2026
- Data leakeddate unknown
At a glance
- Group
- Worldleaks
- Status
- Data leaked
- Country
- India
- Sector
- Technology
- Listed on leak site
- Jun 9, 2026
About the victim
AI dossier — public-source company profileM1xchange is an RBI-licensed digital invoice discounting platform operated by Mynd Solutions. It functions as a TReDS (Trade Receivables Discounting System) marketplace enabling micro, small, and medium enterprises (MSMEs) to auction unpaid invoices to a network of 74+ financiers for immediate cash flow. The platform serves Indian businesses across multiple sectors.
- Industry
- Financial Technology / Invoice Discounting & Trade Finance
Attack summary
Severity: high — M1xchange operates a regulated financial platform handling sensitive MSME and corporate financial data under RBI oversight. Breach of a TReDS marketplace exposes invoice, transaction, and business relationship data at scale affecting multiple stakeholder classes (MSMEs, corporates, financiers). Regulated financial data exposure warrants high severity despite lack of explicit proof count in truncated post.The worldleaks group claims to have breached M1xchange and published data. No specific details on exfiltration method, data categories, or operational impact are provided in the truncated leak post.
Data the group says was taken
AI dossier — extracted from the leak post- MSME business records
- Invoice data
- Corporate buyer information
- Financier transaction records
- User account credentials (likely)
Original description
AI-summarised, not from the leak postM1xchange is an Indian trade receivables discounting platform operated by Mynd Solutions. It functions as an online marketplace where micro, small, and medium enterprises can auction their unpaid invoices to financiers, improving cash flow and working capital access. Operating under the Reserve Bank of India's TReDS framework, it serves the MSME financing sector across India.
Sources
Source
Indexed 4 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

