ingotbrokers.com listed by the darkvault ransomware group
ingotbrokers.com
Overview
On 24 August 2024, the DarkVault ransomware group listed INGOT Brokers on its leak site. INGOT Brokers is a multi-asset brokerage firm founded in 2006 and regulated by the Financial Services Authority of Seychelles, offering trading services through its platform. The listing placed the firm among DarkVault's victims.
What was published
The DarkVault listing for INGOT Brokers did not specify the volume of data exfiltrated or the records involved. DarkVault has published data for other victims following its disclosure format. No archive linked to INGOT Brokers was observed during the analysis window.
Risks for affected individuals
INGOT clients could be exposed if account details, identity documents or trading records were stolen. Financial account data of this kind enables phishing, unauthorised account access and identity fraud. Employees could face exposure of personal records.
What remains unknown
The scope of the exfiltration, the records involved, and whether the group published files are not confirmed. No official statement from INGOT Brokers about the incident has been identified.
What affected people should do
Clients should review account activity, change trading platform credentials, and enable additional authentication where supported. Anyone receiving suspicious communications referencing INGOT should report them to the firm through official channels.
Sources
- http://mdhby62yvvg6sd5jmx5gsyucs7ynb5j45lvvdh4dsymg43puitu7tfid.onion//post/NjBiZDVhNmU4ZmNmOGYyYWNhZGUwNT