Klue
bd_14749cddc608605e · schema v1 · pii pii-v1
Full breach record for Klue →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Icarus on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
As you've probably already heard, ***.com has been impacted by us recently. A number of other companies' Salesforce instances, which were partners to Klue, were exfiltrated. This leak/post is made to address this. We advice Klue to contact us for a swift resolution, in order not to affect the companies you work with. On the other note, if Klue doesnt want to accommodate this request, we advice the companies who want to protect their data to contact us via Session. In order to verify you're a representative of the company you claim to be, you will need to provide a certain value/field from a row on your SF. We wish for your cooperation, not your demise. Make the correct choice. Data stolen: data borrowed - not stolen
Source provenance
- Source URL
- https://www.ransomware.live/id/S2x1ZS5jb21ASWNhcnVz
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 19, 2026
- Raw hash
- 2e09b38cfea9d0314160217b8a6372f51b22bd61959af001f1ea13ae5830410d
Reporting entity
- Name
- Icarusnorm: icarus
Victim entity
- Name
- Kluenorm: klue
- Domain
- klue.com
- Industry
- Technologyllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· icarus
- Threat actor
- IcarusExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.