SEE MATPROOF ON YOUR STACK — BOOK A 30-MINUTE DEMO
BREACHransomwarelive14 Aug 2026

Ransomware: qilin claims 3f (DK) — Not Found

BREACH. Sourced from ransomwarelive, summarised by Matproof.

AI Analysis

What changed and what to do.

On 14 August 2026, the ransomware group Qilin added the Danish organization 3F to its public leak site, claiming a breach. The listing, titled "3F (DK) — Not Found," suggests that the group either failed to exfiltrate data or that the victim’s systems were not fully compromised. No technical details, sample files, or proof of data theft were published at the time of the alert. This is a claim of intrusion, not a confirmed data breach, and the "Not Found" label indicates uncertainty about the actual impact.

The affected entity is 3F, a major Danish trade union representing workers in construction, transport, and other industries. If the claim is verified, the sector impact could include sensitive personal data of union members, employment records, and potentially financial or payroll information. Because 3F operates across multiple industries, any exposure could affect thousands of individuals and create GDPR notification obligations for the data controller.

Compliance teams should treat this as a potential incident requiring verification. First, confirm whether any of your own systems or vendors have connections to 3F or its service providers. Second, monitor Qilin’s leak site for any future publication of data, as the "Not Found" status may change. Third, review your incident response plan for ransomware scenarios, ensuring that data discovery, containment, and breach notification timelines are ready. Finally, if you are a Danish entity or process EU personal data, prepare for potential GDPR reporting to the Datatilsynet, even if the claim is unverified, and document your assessment steps.

This summary is AI-generated for orientation purposes. For regulatory action, always consult the original source linked above.

More BREACH updates

Latest in BREACH.

ransomwarelive14 Aug 2026
Ransomware: qilin claims Radiant (SG) — Not Found

On 14 August 2026, the ransomware group Qilin publicly claimed responsibility for an attack against Radiant (SG), a Singapore-based entity, by listing the organisation on its leak site. The…

ransomwarelive14 Aug 2026
Ransomware: clop claims ZEBRA.COM (US) — Manufacturing

On August 14, 2026, the ransomware group Clop added ZEBRA.COM, a US-based manufacturing firm, to its public leak site. This listing indicates that Clop claims to have exfiltrated sensitive corporate…

Live regulatory monitoring

Never miss a compliance update.

Get weekly digests of DORA, NIS2, GDPR, MaRisk, and ISO 27001 changes — straight to your inbox. Free.

No spam. Weekly digest only. Unsubscribe anytime.

DORANIS2GDPRMaRiskISO 27001

Map this to your controls

Connect regulatory changes to your compliance work.

Matproof maps every regulator update directly to your controls and surfaces the ones that affect your organisation — across 21 frameworks.