Ransomware victim disclosure
← All victimsIntense
listed as intense.pl · Claimed by M3Rx · listed 3 hours ago
Status timeline
- ListedSep 29, 2026
- Data leakeddate unknown
At a glance
- Group
- M3Rx
- Status
- Data leaked
- Country
- Poland
- Sector
- Technology
- Listed on leak site
- Sep 29, 2026
About the victim
AI dossier — public-source company profileIntense is a Polish low-code platform provider specializing in business process management (BPM), automation (RPA), data integration (ESB), and business intelligence (BI). The platform is designed to digitize and automate enterprise workflows across various industries including construction, procurement, and document management.
- Industry
- Software & Enterprise Platforms (Low-Code/BPM)
Attack summary
Severity: high — Confirmed exfiltration of approximately 8.9 TB across 11 datasets with over 7.6 million files from a software platform provider. The scale and volume suggest access to customer data, source code, or sensitive business systems. No proof files are visible in the truncated post, but the volume and structure indicate material data compromise.The m3rx group claims to have exfiltrated approximately 8.9 TB of data across multiple datasets (11 data packages totaling over 9 TB and 7.6 million files combined). The post does not specify the nature of the data or confirm operational disruption, only advertising stolen files for sale.
Data the group says was taken
AI dossier — extracted from the leak post- Database records
- Business documents
- Configuration files
- Application data
- System backups
What the group claims
+48 124200150 , NTENSE Group is a Polish software development and IT consulting company founded in 2006. The company specializes in delivering highly customizable digital transformation enterprise software designed to optimize operational efficiency, automate workflows, and reduce corporate expenditures. Stolen: --
The leak post
captured from the group's siteIf you are interested in this data, please contact our support.Tox: 9A1217BEDA4AB77052A25D17CB6FFB34AFA2BE462E607F2FD8E1DF1DDD4CA16A64E18B1A0BF2 Stolen: 434 GB 341,547 File Stolen: 82.5 GB 106,460 Files Stolen: 446 GB 814,334 Files Stolen: 300 GB 63,434 Files Stolen: 215 GB 226,961 Files Stolen: 460 GB 373,495 Files Stolen: 922 GB 584,228 Files Stolen: 860 Gb 437,048 Files Stolen: 857 GB 1,683,762 Files Stolen: 2.33 TB 1,612,094 Files Stolen: 1.82 TB. 1,719,610 Files
Sources
Source
Indexed 3 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

