Ransomware Leak
play
Thern
Data leak attributed to play, first discovered on 2025-07-31. Approximately 36,625 records were reported exposed.
Threat group
play
Records exposed
36,625
Discovered
2025-07-31
Country
US
Indexed
2025-08-21
Website
www.thern.com
Source ID
21471
About this leak
United States
What is inside this leak sample
Indexed records
36,625
With email
•••
ID documents
•••
File types
•••
Corporate vs personal email
82.36% corporate · 17.64% personal
Top corporate email domains
% of corporate emails
registry.godaddy
1.33%
heliozgroup.com
1.12%
6 more hidden ·
Enterprise
Countries · identity documents
US · 100.0%
Analysed 2026-09-04
More leaks attributed to play
Worried your information is in this or another leak?
Run a free, anonymous search
across millions of ransomware and infostealer records.