N0nRansomware Victim๐Ÿ‡บ๐Ÿ‡ธ US OrganizationTechnology

TapClicks (marketing analytics platform)

Marketing analytics / SaaS ยท United States | The complete platform source code (97,000+ commits with full history); The multi-tenant instance management system with production architecture; A customer's full marketing database: 354 advertising platform datasets, client lists, user accounts with password hashes, ad-platform connection credentials | Everything is real, complete and verifiable. | [ACTIVE: deadline 2026-09-28 01:59 UTC]

Incident Details

Threat Group
N0n
Victim / Organization
TapClicks (marketing analytics platform)
Website / Domain
โ€”
Industry Sector
Technology
Country / Region
๐Ÿ‡บ๐Ÿ‡ธ US
Date Discovered
Thursday, September 24, 2026

What This Listing Means

Posting on N0n's ransomware leak site typically signals that the threat actor claims to have:

  • โ–ธGained unauthorized access to the organization's network via phishing, exposed credentials, or an unpatched vulnerability
  • โ–ธExfiltrated sensitive data โ€” potentially including financial records, PII, customer data, or trade secrets
  • โ–ธDeployed ransomware to encrypt systems and disrupt operations
  • โ–ธIssued a ransom demand with a deadline to publish all stolen data publicly if unpaid

๐Ÿ‡บ๐Ÿ‡ธ US-based organizations hit by ransomware may have mandatory breach notification obligations under state laws, HIPAA (healthcare), SEC regulations (public companies), or CISA guidelines. The notification window is typically 72 hours from discovery.

Open Source Investigation

Is This Your Organization?

Security Arsenal provides 24/7 ransomware incident response. We contain active attacks, support ransom negotiation decisions, perform forensic analysis, and recover your data.

Get Emergency ResponseIR Services Overview

Protect Your Organization

โ† Back to Ransomware Tracker