ransomware
Credible
Kenya (KE)
finance
CPF Financial Services listed by the The Gentlemen ransomware group
CPF Financial Services
CompanyCPF Financial Services
CountryKenya (KE)
Sectorfinance
Breach date2025-02-19
People affected200,000
Ransomware groupthegentlemen
Data typespension records, client data, financial information
Overview
The Gentlemen ransomware group has listed CPF Financial Services, a Kenyan financial institution specialising in pension fund administration and trust services, on its leak site. The listing appeared on 19 February 2025. At the time of analysis, the group's leak page was not reachable.
What was published
The group claims to have exfiltrated data from the financial institution. The archive is expected to include pension records, client data and financial information.
Risks for affected individuals
- Pension contributors' personal and financial data may be exposed.
- Client records could enable fraud.
- Employees' information may be included.
What remains unknown
- The volume of records involved.
- The exact contents of the leak.
- Whether the data has been published elsewhere.
What affected people should do
Clients should monitor account activity and be cautious of unsolicited requests for personal information. CPF Financial Services should notify affected customers and regulators, review compromised systems, and provide clear guidance.
Sources
- http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion