TapClicks, a US-based marketing analytics SaaS platform, claims threat actor N0n is ransomwareing its complete platform source code, a multi-tenant production instance management system, and customer marketing datasets including client lists, user accounts with password hashes, and ad-platform connection credentials. Active with a deadline of 2026-09-28 01:59 UTC, the impact is United States #UnitedStates
Incident Details
- Victim: TapClicks (marketing analytics platform)
- Sector: Technology
- Country: US
- Actor: N0n
- Source: http://nongzecboljwv3yfndkggsybsglfrkffw7bvk2zemuteoxe6etpusnad.onion#v-tapclicks
- Discovered: 2026-09-25T03:21:46.506246+00:00
- Published: 2026-09-25T03:21:29.623423+00:00
Information
- Complete platform source code with 97,000+ commits and full history
- Multi-tenant instance management system with production architecture
- A customer marketing database containing 354 advertising platform datasets
- Client lists, user accounts with password hashes, and ad-platform connection credentials
- Everything is real, complete, and verifiable
- Active deadline: 2026-09-28 01:59 UTC

Disclaimer: This post is based on public claims made by the ransomware group "N0n". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.