CR2
bd_dd3b922bfe202e98 · schema v1 · pii pii-v1
Full breach record for CR2 →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Avoslocker on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
CR2 is an Irish-owned banking software company which provides mobile, internet and ATM financial service technology to more than 100 retail banks across Africa, the Middle East and Asia. Headquartered in Dublin, Ireland, the company has offices in Dubai, London, Cairo, Amman, Bengaluru, Lagos, Johannesburg, Singapore and Perth. Its customers include ANZ, Barclays, Standard Chartered, Botswana Savings Bank, Jordanian Bank al Etihad,pan-African bank Orabank, and Nigeria’s Access Bank plc and Diamond Bank. 500 GB+ Data includes: - Sources to all products ever developed including BankWorld, BankWorld POS & ATM. - Financials - HR documents - Accounting files - Sensitive information on more than 100 banks worldwide Sample includes the compressed 500 MB large file list and a couple random files for proof, shareholders e-mail list, all active directory users with their names, titles, phone numbers, and e-mails. (28.8 MB compressed)
Source provenance
- Source URL
- https://www.ransomware.live/id/Q1IyQGF2b3Nsb2NrZXI=
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 26, 2022
- Raw hash
- c34beccebd70a14a612758d1719a5acc61195625ef77c426afee3a90a381a38c
Reporting entity
- Name
- avoslocker
Victim entity
- Name
- CR2norm: cr2
- Industry
- Financial Servicesllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· avoslocker
- Threat actor
- AvoslockerExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.