Ransomware victim disclosure
← All victimsLiveAction
Claimed by Snatch · listed 3 years ago
Status timeline
- ListedMay 22, 2023
- Data leakeddate unknown
At a glance
- Group
- Snatch
- Status
- Data leaked
- Country
- United States
- Sector
- Technology
- Listed on leak site
- May 22, 2023
About the victim
AI dossier — public-source company profileLiveAction is a U.S.-based software company that provides a Network Observability and Intelligence Platform used by enterprise teams and service providers. Its products — including LiveNX, LiveWire, LiveAssist, and Omnipeek — offer network performance monitoring, packet capture and forensics, application performance management, and security analytics. The company's capabilities have been integrated into BlueCat's network observability and intelligence solutions.
- Industry
- Network Performance Monitoring & Security Software
- Employees
- 51-200
Attack summary
Severity: high — LiveAction serves enterprise and government network teams with sensitive network observability and security tooling; a confirmed data publication by a known ransomware group targeting such a vendor implies exposure of potentially sensitive business, customer, and network-security-related data, warranting a high severity classification even without a detailed data inventory in the post.The Snatch ransomware group claims an attack on LiveAction and has published data (disclosed status: data_published), though the leak post excerpt does not specify whether encryption, exfiltration, or both occurred, nor does it detail the volume or nature of the stolen data.
Data the group says was taken
AI dossier — extracted from the leak post- Undisclosed internal company data
What the group claims
LiveAction’s Network Intelligence platform transforms complex data into actionable insights, providing organizations with a comprehensive view of their network, from network and application performance to security. Enterprise teams can rapidly take action to resolve network issues at scale, accelerate threat response, increase employee productivity, and
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

