Ransomware victim disclosure
← All victimsDublin City Schools GA
Claimed by Eclipse · listed 1 day ago
Status timeline
- ListedSep 14, 2026
- Data leakeddate unknown
At a glance
- Group
- Eclipse
- Status
- Data leaked
- Country
- United States
- Sector
- Education
- Listed on leak site
- Sep 14, 2026
About the victim
AI dossier — public-source company profileDublin City Schools is a charter school district in Dublin, Georgia, serving students and families in the region. The district operates multiple schools including elementary, middle, and high schools, offering advanced/gifted education, special education, ESOL, and various support services aligned to Georgia state standards.
- Industry
- Public Education
- Address
- Dublin, Georgia, US
Attack summary
Severity: medium — Data has been published by the threat actor (disclosed_status = data_published), but the leak post excerpt provides only generic description of the school's mission and does not enumerate specific data types compromised, proof files, or scale of exfiltration. Educational institutions hold student records (FERPA-protected PII), making any confirmed exfiltration serious; however, without explicit proof inventory or data type confirmation in the post, severity is set to medium rather than high.The Eclipse group claims to have compromised Dublin City Schools' systems and published data. The leak post does not specify whether encryption occurred, exfiltration occurred, or both; no operational disruption details are provided.
What the group claims
Dublin City Schools is a charter school system dedicated to preparing students to be effective communicators, problem solvers, and lifelong learners. The district offers a range of academic programs, including advanced and gifted education, special education, and various support services. Their intended clients include students and families in Dublin, Georgia, as well as educators seeking employment opportunities within the district
Sources
Source
Indexed 1 day agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

