Ransomware victim disclosure
← All victimsMilano Promotional Services (MPS Promotions)
listed as mpspromotions.com · Claimed by Threeam · listed 2 years ago
Status timeline
- ListedOct 31, 2024
- Data leakeddate unknown
At a glance
- Group
- Threeam
- Status
- Data leaked
- Country
- Australia
- Sector
- Business Services
- Listed on leak site
- Oct 31, 2024
About the victim
AI dossier — public-source company profileMilano Promotional Services (MPS Promotions) is a coupon redemption and rebate processing company based in New Jersey with over 50 years of industry experience. They provide services to manufacturers and consumer product companies including coupon processing, rebate fulfillment, pick-and-pack fulfillment, and QR code rebate technology, serving as a trusted partner for promotional management.
- Industry
- Coupon Redemption & Rebate Processing Services
- Address
- 2615 River Road, Cinnaminson, NJ 08077, USA
- Founded
- 1970
Attack summary
Severity: medium — Data has been published by the ransomware group with disclosed status, indicating confirmed breach and exfiltration; however, the post provides no specific details about data sensitivity, volume, or type. The company handles client rebate and coupon data which may include consumer PII, but scale and nature are unspecified.The Threeam group claims to have compromised MPS Promotions and published data from the breach. The leak post does not specify whether data was exfiltrated, encrypted, or both, nor does it detail the scope or nature of exposed information.
Data the group says was taken
AI dossier — extracted from the leak post- Business records
- Client information
- Promotional data
What the group claims
Our team succeeds in providing an affordable and reliable redemption service for all promotional needs. Our services are designed especially for new coupon users and small to mid-size consumer product companies. Our business model and service...
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

