Ransomware victim disclosure
← All victimsThammasat University
Claimed by Thegentlemen · listed 4 months ago
Status timeline
- ListedFeb 11, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- Thailand
- Sector
- Education
- Listed on leak site
- Feb 11, 2026
About the victim
AI dossier — public-source company profileThammasat University is one of Thailand's oldest and most prestigious public universities, located in Bangkok. It offers a broad range of undergraduate and postgraduate programmes across faculties including Liberal Arts, Law, Economics, and Sciences. The university operates multiple campuses and serves tens of thousands of students.
- Industry
- Higher Education
- Address
- Tha Prachan Campus, Faculty of Liberal Arts, Thammasat University, Bangkok, Thailand
- Founded
- 1934
Attack summary
Severity: medium — The disclosure status is marked 'data_published', suggesting exfiltration has occurred at an institution holding large volumes of student, staff, and research PII; however, no proof files, data size, or specific data categories are visible from the truncated leak post, preventing a higher severity classification.The group 'thegentlemen' claims to have attacked Thammasat University with data published status indicated; however, the leak post itself is obscured by a bot-verification page, providing no direct detail on encryption, exfiltration, or specific data categories stolen.
What the group claims
basthammasat.org zoominfo.com/c/thammasat-university/371284040 The British and American Studies Programme at Thammasat University offers a comprehensive curriculum focused on the cultural, historical, and social aspects of the UK and the USA. It aims to equip students with critical thinking and analytical skills, preparing them for various career paths in international relations, education, and cultural studies. The programme is designed for students interested in deepening their understanding
The leak post
captured from the group's siteGentlecloud Protection 🛡️ Gentlecloud Verifying your browser... Initializing security checks... I'm not a bot
Sources
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

