LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

Recent Breaches › Liceo Francés Antoine y Consuelo de Saint-Exupéry Listed by thegentlemen Ransomware Group

HIGH severityUnverified claimHow we verify

Liceo Francés Antoine y Consuelo de Saint-Exupéry Listed by thegentlemen Ransomware Group: Ransomware Claim — What’s Alleged & What To Do

RBRecent Breaches Breach Intelligence·September 9, 2025
Liceo Francés Antoine y Consuelo de Saint-Exupéry Listed by thegentlemen Ransomware Group

Reported September 9, 2025.

HIGH
Severity
September 9, 2025
Disclosed
ShareXLinkedInFacebookRedditWhatsAppTelegram

Liceo Francés Antoine y Consuelo de Saint-Exupéry was listed on 09 September 2025 by thegentlemen ransomware group, which states it has exfiltrated internal files. Individuals connected to the school should check whether their data has been exposed and take appropriate protective steps.

Severity & verification
HIGH severityUnverified claim
Data types not itemised.
Published on a ransomware group’s leak site — an unverified extortion claim until the named organization or credible reporting corroborates it.
Check your exposure
See every leak and listing tied to your email. We can’t confirm any single incident against the sources we search, so we won’t pretend to. 15-second check, no card, no account. Details go to your inbox.

By running your scan you agree to the Terms and Conditions and the Privacy Policy, and to GalaxyWarden emailing you the results of this scan.

Families, students and staff connected to Liceo Francés Antoine y Consuelo de Saint-Exupéry face a practical concern: a ransomware group has publicly claimed that internal files from the school were taken during an attack. When a school’s systems are involved, the information at stake can include personal details that affect everyday life—identity, contact data, academic records—yet the precise scope remains limited in public reporting. Knowing what has been claimed, and what has not been confirmed, helps people decide what steps to take next.

On 9 September 2025 the organisation was listed by the ransomware group known as thegentlemen. Public detail on the number of people affected is unknown, and the only description of the material is that internal files were allegedly exfiltrated. This article sets out the known facts, places them in context, and outlines sensible precautions without speculation.

What happened

According to the available record, Liceo Francés Antoine y Consuelo de Saint-Exupéry was listed by thegentlemen ransomware group on 9 September 2025. The listing asserts that internal files were exfiltrated in a ransomware attack. No further public confirmation of the method of intrusion, the exact date of the intrusion itself, the volume of data, or any ransom demand has been supplied in the facts. The number of people whose information may be involved is recorded as unknown. The claim rests on the group’s leak-site listing; independent verification of the full contents or of successful decryption or restoration has not been detailed in the public summary.

Who is thegentlemen?

thegentlemen is a ransomware operation that has appeared in public reporting as a group that encrypts systems and simultaneously steals data, then threatens to publish the stolen material if payment is not made—a pattern commonly called double extortion. Like other contemporary ransomware actors, it typically advertises victims on dedicated leak sites to increase pressure. Public knowledge of the group’s broader activity includes listings of organisations across multiple sectors; however, any specific statements the group may have made about this particular school beyond the simple listing itself are not part of the What's Publicly Reported and are therefore treated only as the group’s claim. Attribution of the incident to thegentlemen therefore rests on that listing rather than on independently verified forensic findings released in the record.

Who is Liceo Francés Antoine y Consuelo de Saint-Exupéry?

Liceo Francés Antoine y Consuelo de Saint-Exupéry is a French school located in El Salvador. It forms part of the network of the Agency for French Education Abroad (AEFE) and educates pupils from kindergarten through the final year of secondary school. The school follows the curriculum set by the French Ministry of National Education; in addition to Salvadoran diplomas, students sit French examinations such as the brevet de collège and the baccalauréat. Its public web presence is associated with the domain lfelsalvador.org. Schools of this type routinely process and store personal data belonging to minors, parents, teachers and administrative staff—enrolment records, contact details, academic files, health or dietary information, and financial or fee-related documents. A breach affecting such an institution therefore carries consequences that extend beyond the organisation itself to the families and children whose information is held in its systems.

What data was at risk

The facts state only that internal files were exfiltrated in a ransomware attack. No inventory of specific data categories—such as names, addresses, identity numbers, grades, medical notes or payment details—has been disclosed. Organisations of this kind typically hold precisely those categories of information: student and parent contact data, academic transcripts, administrative correspondence, and sometimes health or financial records required for school operations. Because the exact contents remain unconfirmed, it is not possible to state which of those typical holdings were among the files taken. The public record therefore leaves the precise nature and sensitivity of the exposed material unknown.

Why it matters

For individuals, the practical risk is that personal information, once outside the school’s control, can be used for identity misuse, targeted phishing, or social-engineering attempts that reference genuine school details. Parents and older students may receive convincing fraudulent messages that appear to come from the institution. For the school itself, the incident can disrupt operations, require costly recovery and notification efforts, and erode trust among families who entrust sensitive data about minors to the establishment. Because the number of people affected is unknown and the file contents are not itemised, the full scale of residual risk cannot yet be measured; the absence of that detail itself prolongs uncertainty for those who may be involved.

What to do if you're exposed

If you or your family have a connection to the school, treat any unexpected messages that reference school matters with caution and verify them through official channels rather than links or attachments in the message itself. Monitor financial and identity accounts for unusual activity and consider placing fraud alerts with relevant credit or identity services where available in your jurisdiction. Change passwords on accounts that may have been used in school-related systems, and enable multi-factor authentication wherever it is offered. Because public detail on the exact data is limited, a free exposure scan of your email address can help you check whether that address has already appeared in known breach datasets; such a check is a practical first step while further official information, if any, becomes available.

AICompiled with AI assistance from public sources and published under our editorial standards.

Editorial & sourcing policy
Recent Breaches is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data, and we do not hold the data claimed in leak-site listings. Incidents are compiled from publicly accessible sources and threat-intelligence platforms and are reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — write to support@galaxywarden.com or press@recentbreaches.com.
Check if you’re exposed →

How this breach connects

Company

Attributed to

Method

CompanyLiceo Francés Antoine y Consuelo de Saint-Exupéry security record
84/100
DoxxScan™ · Low doxx risk
B- 76Above-average record

1 reported incident on record.

See Liceo Francés Antoine y Consuelo de Saint-Exupéry’s full breach history →

More recent breaches

Instituto Socio-Económico Comunitario (INSEC) Listed by thegentlemen Ransomware GroupSeptember 17, 2025Ever Green Industria e Comercio Ltda Listed by thegentlemen Ransomware GroupDecember 24, 2025Singapore City Development Company Limited (SINGCONS) Listed by thegentlemen Ransomware GroupNovember 24, 2025St Stephens International Listed by thegentlemen Ransomware GroupNovember 4, 2025

Latest breaches

Read GalaxyWarden’s full analysis of the Liceo Francés Antoine y Consuelo de Saint-Exupéry Listed by thegentlemen Ransomware Group →

Source: threat-actor leak-site listing

Publicly posted by thegentlemen — unverified claim, pending independent verification

Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.

Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.

ShareXLinkedInFacebookRedditWhatsAppTelegram