GLOBALMalwareFinancial ServicesFinanceRansomwareLapsus$LapsusRansom DemandedActor NamedMedium
MAPFRE ASSURANCE
bd_0dab3d4a171c988b · schema v1 · pii pii-v1
Full breach record for MAPFRE ASSURANCE →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Lapsus$ on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Group activity: Financial ServicesDiscovered: 2026-05-31
Source: Ransomware.live
Post text · scraped from the leak site
This data has been acquired by a private party. No public leak will occur.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Unverified claimView incident
No regulatory filing corroborates this yet. If an SEC 8-K, state-AG notice, or victim statement lands, DisclosureLens will merge it into an incident and link it here.
Source provenance
- Source URL
- https://www.ransomware.live/id/TUFQRlJFIEFTU1VSQU5DRUBsYXBzdXMk
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 26, 2026
- Raw hash
- ca5a8fc5a809f2b84e8cc26a0898ca284c5f5e929beae0480c02097102fb12a4
Reporting entity
- Name
- lapsus$
Victim entity
- Name
- MAPFRE ASSURANCEnorm: mapfre assurance
- Industry
- Financial Servicesllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· lapsus$
- Threat actor
- Lapsus$ExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.