Ransomware victim disclosure
← All victimsRed-Line
Claimed by nightspire · listed 7 days ago
Status timeline
- Listed
May 24, 2026
- Data leaked
At a glance
- Group
- nightspire
- Status
- Data leaked
- Country
- US
- Sector
- Not Found
- Listed on leak site
- May 24, 2026
About the victim
AI dossier — public-source company profileRed-Line is a US-based company. No public website or further identifying information is available.
Attack summary
Severity: high — Confirmed exfiltration of sensitive financial data (tax returns, QuickBooks records) and business documentation. Tax returns constitute PII at scale and are highly regulated. No operational impact stated, but data sensitivity is significant.The nightspire group claims to have exfiltrated financial and business records including QuickBooks files, tax returns, proposals, and contracts, along with automated backups.
Data the group says was taken
AI dossier — extracted from the leak post- QuickBooks files
- Tax returns
- Proposals
- Contracts
- QuickBooks automated backups
What the group claims
- QuickBooks Files- Scanned tax returns- Proposal, Contrats- QuickBooks automated backups
Source
Indexed 7 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
