Ransomware victim disclosure
← All victimsMomentum Telecom
listed as WARNING · Claimed by EndZone · listed 13 hours ago
Status timeline
- ListedOct 5, 2026
- Data leakeddate unknown
At a glance
- Group
- EndZone
- Status
- Data leaked
- Listed on leak site
- Oct 5, 2026
About the victim
AI dossier — public-source company profileMomentum Telecom is a telecommunications provider serving approximately 7.5 million customers, with operations including internet service delivery in Utah and surrounding regions.
- Industry
- Telecommunications
- Address
- Eagle Mountain, Utah
Attack summary
Severity: critical — Confirmed exfiltration of PII at massive scale (7.5 million customers), combined with demonstrated operational disruption to critical telecommunications infrastructure affecting families, businesses, and students. Publicly corroborated by news coverage of the Eagle Mountain outage.EndZone claims to have exfiltrated PII of 7.5 million customers and caused widespread operational disruption, including the Eagle Mountain internet outage that received national news coverage. The group states they deleted modems, caused service disruptions lasting days, and repeatedly regained access despite Momentum's security efforts.
Data the group says was taken
AI dossier — extracted from the leak post- Personally identifiable information (PII) of 7.5 million customers
- Network infrastructure data
- Customer service records
What the group claims
This is what happens when you ignore us or go ghost. Momentum Telecom is a prime example of negligence in action. They don't care about their 7.5 million customers whose PII has been exposed. They don't care about the 100,000+ people who lost internet service due to widespread outages we caused as a direct result of their poor security practices.The Eagle Mountain, Utah "cyberattack" and internet outage that made national news? That was us. That was a direct consequence of Momentum's failure to secure their systems. They ignored repeated warnings, they burned access repeatedly, and we kept gaining it back. We deleted modems, caused service disruptions, and left families, businesses, and students without internet for days. Read the coverage:ABC4|Fox 13Momentum management repeatedly contacted us, then ghosted us every single time. They reached out to initiate negotiations, then disappeared. They agreed to terms, then stopped responding. This pattern continued over and over. They don't take this seriously. They don't care about their customers. Now their data is public and their customers are paying the price for their arrogance.Don't be like Momentum. Don't ignore us. Don't go ghost. When we reach out, we expect a response. When we say we have your data, we have your data. When we say we can cause damage, we can cause damage.Contact us. Negotiate. Resolve this before you become the next headline.
Source
Indexed 13 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

