Ransomware victim disclosure
← All victimsIrec Sas
Claimed by Ransomhouse · listed 2 months ago
Status timeline
- Listed
Mar 13, 2026
- Data leaked
At a glance
- Group
- Ransomhouse
- Status
- Data leaked
- Country
- France
- Sector
- Not Found
- Listed on leak site
- Mar 13, 2026
- Data size
- 743 GB
- Ransom demanded
- $740
About the victim
AI dossier — public-source company profileIREC SAS is a French company specializing in providing tickets for amusement parks, concert venues, and sporting events. The company operates via www.irec.fr and reports revenue of approximately €10.7 million. It is based in France and employs around 150 people.
- Industry
- Ticketing & Events Services
- Employees
- 150
Attack summary
Severity: high — Data has been confirmed published (status: DISCLOSED) by the threat actor following encryption, indicating confirmed exfiltration and public release of business data. A ticketing company is likely to hold customer PII (names, payment details, booking records) at meaningful scale.RansomHouse claims to have encrypted IREC SAS's systems on 28 February 2026, with the disclosure published on 26 March 2026. The post indicates data has been published (status: DISCLOSED), though the specific data volume is listed as '~' (approximate/unspecified) in the leak entry.
Data the group says was taken
AI dossier — extracted from the leak post- Encrypted company files
- Ticketing system data
- Customer event booking records
What the group claims
IREC is a company that specializes in providing tickets for amusement parks, concert venues, and sporting events
The leak post
captured from the group's site```
{"data":[{"id":"a1894b76b7004c75a3a0845799af49956592e3d9","display":"animated","header":"HOT NEWS","info":" Trellix is a global cybersecurity company.","url":"","sort":1,"views":"436242"},{"id":"336b257f582b17573c97578efd4b22762bf77344","sort":2,"header":"Trellix (McAfee & FireEye)","url":"https://www.trellix.com/","private":"false","revenue":"1.5-2 B$","employees":"5000","info":"Trellix is a global cybersecurity company formed from the October 2021 merger of McAfee Enterprise and FireEye. It provides services to over 50,000 business and government customers worldwide, protecting more than 200 million endpoints. The companys open and native extended detection and response (XDR) platform helps organizations confronted by todays most advanced threats gain confidence in the protection and resilience of their operations. Trellix, along with an extensive partner ecosystem, accelerates technology innovation through machine learning and automation to empower over 40,000 business and government customers with living security","statusDate":"DEPENDS ON YOU","status":"EVIDENCE","published":"NOT YET","action":"Encrypted","actionDate":"17/04/2026","volume":"~","content":"cybersecurity.html"…Sources
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
