GLOBALMalwareEducationEducationRansomwarePlayRansom DemandedActor NamedData Leak ThreatenedData PublishedHigh
De Gruyter Brill, Inc
bd_a35b4b53d97c1608 · schema v1 · pii pii-v1
Full breach record for De Gruyter Brill, Inc →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Play on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Group activity: EducationDiscovered: 2026-02-07
Source: Ransomware.live
Post text · scraped from the leak site
United States
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_455f45ef52b1b583Maine State AGfiled 2026-03-09(37d gap)Candidate
- bd_de408cbc36b2697aNew Hampshire State AGfiled 2026-03-09(37d gap)Verified
- bd_717b85126fa22b83Indiana State AGfiled 2026-03-10(38d gap)Verified by operator
Source provenance
- Source URL
- https://www.ransomware.live/id/RGUgR3J1eXRlciBCcmlsbEBwbGF5
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 31, 2026
- Raw hash
- 6264d877783a1623b7b087693ec30f5bfb718fc9a751f1ca3774570a6f778df9
Reporting entity
- Name
- play
Victim entity
- Name
- De Gruyter Brill, Incnorm: de gruyter brill
- Domain
- degruyterbrill.com
- Industry
- Educationllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· play
- Threat actor
- PlayExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.