Ransomware victim disclosure
← All victimsAdaptavist Group LTD
Claimed by Thegentlemen · listed 2 months ago
Status timeline
- ListedApr 8, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- United Kingdom
- Sector
- Technology
- Listed on leak site
- Apr 8, 2026
About the victim
AI dossier — public-source company profileAdaptavist Group LTD is a British enterprise software company and platinum Atlassian partner, known for developing ScriptRunner for Jira, Confluence, and Bitbucket. The company serves Fortune 500 clients including NASA, Visa, and Deutsche Bank, as well as government organisations. It also operates Salable, a licensing platform, and provides software development and consulting services at scale.
- Industry
- Enterprise Software & Atlassian Ecosystem Solutions
- Address
- London, United Kingdom
- Employees
- 501-1000
- Founded
- 2005
Attack summary
Severity: critical — Confirmed exfiltration includes nearly 500,000 customer PII records constituting a GDPR-scale breach, highly sensitive IP (full product source code), production secrets and credentials enabling further compromise, and legal/contractual documents; the scale, regulatory exposure, and downstream risk to Fortune 500 and government clients all meet the critical threshold.The threat actor claims a complete infrastructure compromise involving exfiltration of source code, 484,220 customer records from HubSpot CRM, legal documents including NDAs, 3TB+ from Nexus repositories containing production secrets and credentials, and production databases; the licensing system is also alleged to have been compromised enabling product cloning.
Data the group says was taken
AI dossier — extracted from the leak post- Source code (ScriptRunner, Salable platform)
- 484,220 HubSpot CRM customer records
- 20,000+ legal tickets with 33,000 documents
- 2,000 NDAs and contracts
- 3TB+ Nexus repository data (production secrets, Docker images, Helm charts)
- Kubernetes credentials
- OAuth credentials
- Snowflake Data Warehouse data
- Confluence documentation (24,547 pages, 100+ GB)
- Production databases
- Licensing system access
What the group claims
Adaptavist Group LTD is a British platinum Atlassian partner and enterprise software developer serving Fortune 500 clients including NASA, Visa, Deutsche Bank, and government organizations. The company's flagship product is ScriptRunner for Atlassian Jira, Confluence, and Bitbucket. Complete infrastructure compromise: source code of all products (ScriptRunner, Salable licensing platform), 484,220 customer records from HubSpot CRM (GDPR violation), 20,000+ legal tickets with 33,000 documents including 2,000 NDAs and contracts, 3TB+ from Nexus repositories (production secrets, Docker images, Helm charts), Kubernetes, OAuth credentials, Snowflake Data Warehouse, Confluence (24,547 pages, 100+GB documentation), production databases. Licensing system compromised enabling product cloning.
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

