Ransomware victim disclosure
← All victimsReutone
Claimed by Handala · listed 2 years ago
Status timeline
- ListedDec 25, 2024
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileReutOne is an Israeli CRM software company specializing in Microsoft Dynamics CRM implementations and customizations. They offer CRM solutions, business automation, telemarketing, billing management, and professional services with over 28 years of experience, serving 1,200+ projects and 15,500+ users across organizations of various sizes.
- Industry
- Enterprise Software & CRM Solutions
- Employees
- 51-200
Attack summary
Severity: high — Confirmed exfiltration of significant business data at scale affecting 1,500 customers; the victim is a software vendor whose customers' sensitive business data was exposed, creating cascading impact across multiple organizations.The Handala group claims to have compromised ReutOne and exfiltrated data from approximately 1,500 of their customers. The post suggests exposure of sensitive business data belonging to Israeli companies managed through ReutOne's CRM platform.
Data the group says was taken
AI dossier — extracted from the leak post- Customer database records
- Business communication data
- CRM system data
- Customer client information
What the group claims
Oh, what a day it has been for Reutone, the self-proclaimed “largest CRM company in Israel”! It turns out that their customer communication software, built to protect your sensitive business data, is apparently as secure as a leaky bucket in a rainstorm. The “unfortunate” hack that emptied the information of 1,500 “big and reliable” Israeli…
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

