A ransomware group operating under the name Safepay has posted a claim on its dark web leak site stating that it obtained data from Compunnel, an IT staffing and consulting firm, with the listing dated September 11, 2026. This claim comes solely from the group’s own leak-site posting, which is being tracked and archived by ransomware.live, a research platform that monitors extortion group activity. At this stage, the claim has not been verified by Compunnel, by any independent security researcher, or by any regulatory body, and it should be treated as an unconfirmed assertion made by a criminal actor rather than an established fact.
Where things stand: confirmed details versus open questions
- Claimed date of the incident as listed by the group: September 11, 2026
- Company sector: general business services (IT staffing and consulting)
- The specific categories of data Safepay claims to have obtained — such as employee records, client information, or financial documents — have not been disclosed on the leak-site posting reviewed, and no such details have been independently confirmed
- No public statement from Compunnel confirming or denying the incident has been identified at the time of writing
- No filings with data protection regulators tied to this claim have been located so far
Precautions worth taking while this claim remains unverified
- Change passwords tied to any accounts you have used in connection with Compunnel, choosing unique passwords not reused elsewhere
- Turn on two-factor authentication wherever it’s offered, particularly for email and financial accounts
- Stay alert to phishing attempts — messages referencing this alleged incident, urging urgent action, or asking for login credentials should be treated with suspicion
- Consider a service like a service like Aura or LifeLock that monitors for identity theft and alerts you to suspicious use of your personal information
- Keep an eye on account statements and credit reports for any unfamiliar activity in the coming weeks
BreachLetter will revisit and update this article if Compunnel issues a statement confirming or disputing the claim, or if the incident is reported to a data protection regulator or other official body.