Ransomware victim disclosure
← All victimsThe Briars Group
Claimed by Snatch · listed 3 years ago
Status timeline
- ListedJun 5, 2023
- Data leakeddate unknown
At a glance
- Group
- Snatch
- Status
- Data leaked
- Country
- Australia
- Sector
- Business Services
- Listed on leak site
- Jun 5, 2023
About the victim
AI dossier — public-source company profileBriars Group is an international back-office consultancy operating in 100+ countries, serving 3,000+ clients over more than 30 years in business. The company provides outsourced accounting, HR, payroll, tax, and compliance services on a subscription model, supporting businesses through international expansion and full business lifecycle management. It positions itself as a strategic partner for global market entry and operational scaling.
- Industry
- International Back-Office & Business Process Outsourcing
Attack summary
Severity: critical — Briars Group handles sensitive financial, HR, payroll, and compliance data for 3,000+ client businesses across 100+ countries. A data publication by Snatch means regulated and sensitive data — including employee PII, payroll records, and financial information — belonging to both Briars and potentially thousands of its clients may be exposed at significant scale.Snatch claims to have exfiltrated data from Briars Group, with the disclosure status marked as data_published, indicating that stolen data has been released or made available. The exact volume of data and whether encryption was also performed are not stated in the leak post.
Data the group says was taken
AI dossier — extracted from the leak post- Accounting records
- HR data
- Payroll information
- Tax documents
- Compliance records
- Client business data
What the group claims
We help ambitious businesses land and expand in record time without huge set up costs, compliance headaches or unnecessary business risk. Briars is an international back office consultancy company, providing support services for the full lifecycle of your business, no matter the location, for over 30
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

