BREACHransomwarelive12 Jun 2026

Ransomware: coinbasecartel claims Demand.io (US) — Technology

BREACH. Sourced from ransomwarelive, summarised by Matproof.

AI Analysis

What changed and what to do.

On June 12, 2026, a ransomware group known as coinbasecartel publicly claimed responsibility for a breach targeting Demand.io, a US-based technology company. The incident was published on the ransomware.live leak site, which tracks and verifies ransomware attacks. While the specific data compromised has not been fully detailed, the claim indicates that the group has exfiltrated sensitive information and is likely threatening to release it unless a ransom is paid. This event falls under the BREACH framework, which typically involves unauthorized access and data theft.

The primary affected organization is Demand.io, a technology firm, but the broader implications extend to any company in the tech sector that handles customer data, intellectual property, or operational systems. Ransomware groups like coinbasecartel often target firms with valuable digital assets, and the US technology sector remains a high-risk target. Compliance teams in similar organizations should assess their own exposure, particularly if they rely on third-party vendors or have weak endpoint detection and response capabilities.

For compliance teams, immediate next steps include verifying whether any shared infrastructure or data flows exist with Demand.io, reviewing incident response plans for ransomware scenarios, and ensuring that backups are isolated and tested. Teams should also monitor for any leaked data that may include credentials or proprietary information, and update risk assessments to reflect the increased threat from this specific group. Finally, confirm that breach notification obligations under relevant US state laws or GDPR (if EU data is involved) are understood and ready to be triggered.

View original at ransomwarelive

This summary is AI-generated for orientation purposes. For regulatory action, always consult the original source linked above.

More BREACH updates

Latest in BREACH.

← Back to all updates
Live regulatory monitoring

Never miss a compliance update.

Get weekly digests of DORA, NIS2, GDPR, MaRisk, and ISO 27001 changes — straight to your inbox. Free.

No spam. Weekly digest only. Unsubscribe anytime.

DORANIS2GDPRMaRiskISO 27001

Map this to your controls

Connect regulatory changes to your compliance work.

Matproof maps every regulator update directly to your controls and surfaces the ones that affect your organisation — across 21 frameworks.

Book a DemoBrowse all updates
Ransomware: coinbasecartel claims Demand.io (US) — Techno… — BREACH | Matproof