Ransomware victim disclosure
← All victimsUnknown Trade Association
Claimed by Genesis · listed 7 days ago
Status timeline
- ListedAug 11, 2026
- Data leakeddate unknown
At a glance
- Group
- Genesis
- Status
- Data leaked
- Listed on leak site
- Aug 11, 2026
About the victim
AI dossier — public-source company profileA trade association representing over 10,000 members and engaged in lobbying and political activity. No specific identity disclosed in the leak post or available public records.
- Industry
- Trade Association / Lobbying
Attack summary
Severity: critical — Confirmed exfiltration of regulated and sensitive data at scale: PII (personal data, HR/payroll), financial records, contracts with NDAs, and organizational operational data from a politically-connected entity representing 10,000+ members. Multiple archive parts (25 segments) indicate substantial data volume. Political context elevates sensitivity.Genesis claims to have exfiltrated a comprehensive dataset including personal data, business records, contracts, HR/payroll information, financial data, and network files from the organization's systems.
Data the group says was taken
AI dossier — extracted from the leak post- Personal Data
- Business Data
- Contracts and NDAs
- Email and Message Correspondence
- HR & Payroll Data
- Operational Data
- Financial Data
- Management Data
- Network User Folders
- File Server Data
What the group claims
A trade association representing more than 10,000 members, involved in lobbying and politics.
The leak post
captured from the group's siteA trade association representing more than 10,000 members, involved in lobbying and politics. ``` - Personal Data. - Business Data. - Contracts and NDA's. - Pst and Msg correspondence. - HR & Payroll data. - Operational Data. - Financial Data. - Data related to company management. - Network users folders. - Data from company fileserver. ``` [Download The List of Company Files](http://genesis6ixpb5mcy4kudybtw5op2wqlrkocfogbnenz3c647ibqixiad.onion/download/13a83c68b809e44e7791.txt) [Download The List of Archive Contents](http://genesis6ixpb5mcy4kudybtw5op2wqlrkocfogbnenz3c647ibqixiad.onion/download/13a83c68b809e44e7791_archive_content.txt) [Download company data archives part 1](http://genesis6ixpb5mcy4kudybtw5op2wqlrkocfogbnenz3c647ibqixiad.onion/download/13a83c68b809e44e7791_part1.tar.gz) [Download company data archives part 2](http://genesis6ixpb5mcy4kudybtw5op2wqlrkocfogbnenz3c647ibqixiad.onion/download/13a83c68b809e44e7791_part2.tar.gz) [Download company data archives part 3](http://genesis6ixpb5mcy4kudybtw5op2wqlrkocfogbnenz3c647ibqixiad.onion/download/13a83c68b809e44e7791_part3.tar.gz) [Download company data archives part 4](http://genesis6ixpb5mcy4kudybtw5op2wqlrkocfogb…
Data the group says was taken
- Personal Data
- Business Data
- Contracts and NDAs
- PST and MSG correspondence
- HR & Payroll data
- Operational Data
- Financial Data
- Data related to company management
- Network users folders
- Data from company fileserver
Screenshot of the leak post

Sources
Source
Indexed 7 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

