Ransomware victim disclosure
← All victimsVahidOnline
listed as Who is VahidOnline? · Claimed by Handala · listed 3 months ago
Status timeline
- Listed
Mar 17, 2026
- Data leaked
At a glance
About the victim
AI dossier — public-source company profileVahidOnline is an Iranian online entity whose exact nature, products, or services cannot be determined from the available leak post or public site content. The victim name appears to be a personal or branded online presence based in Iran. No further verifiable details are available.
Attack summary
Severity: low — No verifiable proof files, no described data inventory, no stated operational impact, and the leak post contains only political messaging with no technical specifics about the attack or data at stake.Handala claims to have compromised VahidOnline and published data, though the leak post excerpt is primarily political rhetoric and does not specify whether encryption or exfiltration occurred, nor does it describe the specific data stolen.
What the group claims
The crimes and foolishness of the leaders of the Epstein sect and the Kahanist sect have reached such a level that today, not only the elites and freedom-seekers of the world, but even Western governments and the masses of Jews, Christians, and Muslims have clearly drawn a line separating themselves from these two bloodthirsty…
Sources
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
