Ransom! KlearNow.AI (FEB-2026)

KlearNow.AI, a US-based company, reports a ransomware incident in which the threat actor thegentlemen exfiltrated 3 TB of data, including two years of correspondence, a database dump, and all source code. They claim CBP declarations were filed for major clients such as BASF, Safran, and Sumitomo, while reiterating KlearNow.AI’s mission to simplify global trade with AI- and ML-driven logistics as a service #UnitedStates

Incident Details

  • Victim: KlearNow.AI
  • Sector: Technology
  • Country: US
  • Actor: thegentlemen
  • Source: http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion
  • Discovered: 2026-02-08 20:05:19.617147
  • Published: 2026-02-08 19:54:47.000000

Information

  • KlearNow.AI (US)
  • Threat actor: thegentlemen
  • Websites: www.klearnow.ai, https://www.zoominfo.com/c/klearnowai/566144278
  • Data stolen: 3 TB including all correspondence for the last two years, a database dump, and all source code
  • Filed CBP declarations for major companies such as BASF, Safran, and Sumitomo
  • Mission: simplify global trade with AI- and ML-driven products that make logistics clear, cost-effective, and transparent
  • Product: smart Logistics as a Service (LaaS) platform that transforms B2B supply chains and eliminates manual data entry

Disclaimer: This post is based on public claims made by the ransomware group "thegentlemen". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live