Ransomware Group Claims Attack on Cleaver-Brooks

A ransomware group calling itself Anubis claims to have carried out an attack on Cleaver-Brooks, with the claim appearing on the group’s dark web leak site on or around August 10, 2026. This claim was tracked by ransomware.live, a security research platform that monitors ransomware groups’ public leak sites, and has not been independently verified by BreachLetter. Cleaver-Brooks has not issued any public statement confirming or denying the claim, and no regulator has confirmed an incident involving the company.

What we know — and don’t
  • A group calling itself Anubis listed Cleaver-Brooks on its leak site with a claimed date of August 10, 2026.
  • Cleaver-Brooks operates outside the finance, legal, education, retail, and healthcare sectors, and is categorized here as ‘other.’
  • The specific types of data allegedly accessed have not been disclosed by the group and have not been confirmed by Cleaver-Brooks.
  • No independent verification of the claim currently exists beyond the group’s own leak-site posting.
  • It is not yet known whether Cleaver-Brooks has notified customers, employees, or regulators about any incident.
What should you do if you have an account with this company?
  • Change your password for any account associated with Cleaver-Brooks, and avoid reusing that password elsewhere.
  • Enable two-factor authentication (2FA) wherever it is offered, particularly on email and financial accounts.
  • Be cautious of unexpected emails, texts, or calls referencing Cleaver-Brooks, as these could be phishing attempts exploiting the claim.
  • Monitor your financial statements and credit reports for any unfamiliar activity.
  • Consider using an identity monitoring service like a service like Aura or LifeLock to get alerted if your personal information appears in places it shouldn’t.
  • Keep an eye on official communications from Cleaver-Brooks for any updates regarding this claim.

BreachLetter will update this page if Cleaver-Brooks confirms the incident, or if the matter is officially reported to regulators or disclosed through other verified channels.

Leave a Comment