Ransom! TapClicks (marketing analytics platform) (SEP-2026)

Ransom! TapClicks (marketing analytics platform) (SEP-2026)
TapClicks, a US-based marketing analytics SaaS platform, claims threat actor N0n is ransomwareing its complete platform source code, a multi-tenant production instance management system, and customer marketing datasets including client lists, user accounts with password hashes, and ad-platform connection credentials. Active with a deadline of 2026-09-28 01:59 UTC, the impact is United States #UnitedStates

Incident Details

  • Victim: TapClicks (marketing analytics platform)
  • Sector: Technology
  • Country: US
  • Actor: N0n
  • Source: http://nongzecboljwv3yfndkggsybsglfrkffw7bvk2zemuteoxe6etpusnad.onion#v-tapclicks
  • Discovered: 2026-09-25T03:21:46.506246+00:00
  • Published: 2026-09-25T03:21:29.623423+00:00

Information

  • Complete platform source code with 97,000+ commits and full history
  • Multi-tenant instance management system with production architecture
  • A customer marketing database containing 354 advertising platform datasets
  • Client lists, user accounts with password hashes, and ad-platform connection credentials
  • Everything is real, complete, and verifiable
  • Active deadline: 2026-09-28 01:59 UTC

Disclaimer: This post is based on public claims made by the ransomware group "N0n". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live