A ransomware group calling itself ‘thegentlemen’ claims to have carried out an attack against ESCON Group, with the claim surfacing on the group’s dark-web leak site on or around August 21, 2026. This claim was identified and tracked by ransomware.live, a security research platform that monitors the public leak sites operated by ransomware groups. At this time, the claim is unverified, ESCON Group has not issued any public confirmation, and no regulator has confirmed an incident involving the company.
What we know — and don’t
- A group identifying itself as ‘thegentlemen’ listed ESCON Group on its leak site, with the claim dated to on or around August 21, 2026.
- ESCON Group operates in a sector categorized as ‘other’ — beyond this, its specific business activities have not been detailed in this report.
- The specific types of data the group claims to have obtained have not been disclosed in the listing and have not been independently confirmed.
- ESCON Group has not publicly confirmed whether an attack occurred or whether any systems or data were affected.
- No regulatory filing or official disclosure regarding this claim is known to exist at this time.
What should you do if you have an account with this company?
- Change your password for any account with ESCON Group, and avoid reusing that password on other sites.
- Enable two-factor authentication (2FA) wherever it is offered, both for accounts with this company and for other important accounts.
- Be alert to phishing emails, texts, or phone calls that reference ESCON Group or claim to relate to this incident — do not click links or provide information to unsolicited contacts.
- Monitor your bank and credit card statements for unfamiliar activity, particularly if you believe financial information may have been involved.
- Consider using an identity monitoring service like a service like Aura or LifeLock to help watch for signs that your personal information is being misused elsewhere.
- Keep an eye on official communications from ESCON Group, as verified information may take time to be released.
BreachLetter will update this article if ESCON Group confirms this incident, issues a public statement, or if the matter is reported to relevant regulators.