Ransomware victim disclosure
← All victimsOSSC Software de Nómina y Capital Humano
listed as ossc.com.mx · Claimed by lockbit3 · listed 1 year ago
Status timeline
- Listed
Mar 25, 2025
- Data leaked
At a glance
About the victim
AI dossier — public-source company profileOSSC is a Mexican software company founded in 2008 that develops payroll and human capital management solutions. Based in Guadalajara, Jalisco, they provide customizable GIRO payroll software, time tracking, employee kiosks, digital personnel files, and related HR infrastructure services to businesses.
- Industry
- Human Resources & Payroll Software
- Address
- Guadalajara, Jalisco, México
- Founded
- 2008
Attack summary
Severity: high — HR and payroll software company targeted; likely access to sensitive employee and client payroll data at scale. The victim is a B2B software provider serving multiple companies, increasing exposure scope. Data exfiltration appears confirmed by publication, though specific proof count and data categories are not detailed in the truncated post.LockBit3 claims to have attacked OSSC Mexico and is publishing the company as a victim. The group's post indicates data exfiltration, though specific details on what was encrypted or exfiltrated are not provided in the truncated leak post.
Data the group says was taken
AI dossier — extracted from the leak post- Payroll records
- Human resources data
- Employee information
- Business software/source code
- Client data
What the group claims
Greetings! Today we are posting here the new company, "OSSC Mexico". Company Description: In 2008, OSSC was created with a base of experts who already had more than ten years of experience in developing GIRO payroll software. Headquarters:...
Sources
Source
Indexed 1 year agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
