LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

Recent Breaches › scotttesting.com - MORE THEN 2.5TB DATA LEAKED Listed by lv Ransomware Group

HIGH severityUnverified claimHow we verify

scotttesting.com - MORE THEN 2.5TB DATA LEAKED Listed by lv Ransomware Group: Ransomware Claim — What’s Alleged & What To Do

RBRecent Breaches Breach Intelligence·November 23, 2021
scotttesting.com  - MORE THEN 2.5TB DATA LEAKED Listed by lv Ransomware Group

Reported November 23, 2021.

HIGH
Severity
November 23, 2021
Disclosed
ShareXLinkedInFacebookRedditWhatsAppTelegram

The scotttesting.com - MORE THEN 2.5TB DATA LEAKED Listed by lv Ransomware Group (reported November 23, 2021) is an unverified claim; the data involved is undisclosed belonging to roughly unknown people. If you have an account with them, your information may now be circulating on the open web and with data brokers. Here’s exactly what happened, how to check if you were affected, and what to do next.

Severity & verification
HIGH severityUnverified claim
Data types not itemised.
Published on a ransomware group’s leak site — an unverified extortion claim until the named organization or credible reporting corroborates it.
Check your exposure
See every leak and listing tied to your email. We can’t confirm any single incident against the sources we search, so we won’t pretend to. 15-second check, no card, no account. Details go to your inbox.

By running your scan you agree to the Terms and Conditions and the Privacy Policy, and to GalaxyWarden emailing you the results of this scan.

On November 23, 2021, the ransomware group lv listed scotttesting.com on its data-leak site and stated that it had taken more than 2.5 terabytes of internal files. The number of individuals whose information may be involved is not known, and no independent confirmation of the data’s contents or volume has been made public. The incident forms part of a pattern in which ransomware operators publish claims of stolen material on dedicated sites when negotiations with the targeted organisation fail or do not occur.

Inside the incident

The only confirmed public record is the November 23, 2021 listing on the lv site. The group claims to have exfiltrated internal files during a ransomware operation and states the volume exceeds 2.5 terabytes. No further technical details—such as the precise date of intrusion, the initial access method, or the encryption status of systems—have been disclosed by either the organisation or the group. The number of people potentially affected also remains unreported.

Inside lv

lv is a ransomware operation that follows the double-extortion model now common among such groups. It typically encrypts victim systems and then publishes samples or indexes of stolen data on a leak site to pressure payment. The group has been publicly linked to multiple incidents since at least 2020, using affiliate networks to deploy its tooling and maintaining a consistent presence on the clearnet for listing victims. Its listings constitute claims by the group; independent verification of the data’s authenticity or completeness is rarely available at the time of posting.

scotttesting.com - MORE THEN 2.5TB DATA LEAKED and its sector

scotttesting.com - MORE THEN 2.5TB DATA LEAKED is an organisation whose specific sector and operational scope are not described in available public records of the incident. Entities of this type commonly maintain internal documents, configuration files, customer or employee records, and operational data necessary to their functions. A breach involving claimed exfiltration of more than 2.5 terabytes therefore carries the possibility that material not intended for public release has left the organisation’s control, regardless of the sector in which it operates.

What data was at risk

The listing refers only to “internal files exfiltrated in ransomware attack.” No inventory of file types, named datasets, or categories of personal information has been released. Organisations holding operational records routinely store email archives, authentication material, project documentation, and contact lists; however, whether any of these categories are present in the claimed 2.5-terabyte set is unconfirmed.

What's at stake

Individuals whose details appear in internal files face the possibility that their information could be used for targeted phishing, identity misuse, or resale. The organisation itself may encounter regulatory scrutiny, loss of partner or customer trust, and costs associated with investigation and remediation. Because the exact contents remain undisclosed, the scale of these consequences cannot be quantified from public information alone.

What to do if you're exposed

Anyone concerned that their information may have been included in the claimed dataset should begin by monitoring accounts for unusual activity and enabling multi-factor authentication wherever available. They should also review recent statements or notices issued by scotttesting.com - MORE THEN 2.5TB DATA LEAKED for any official guidance.

Readers can run a free exposure scan of their email address against known breach data to check for prior appearances in published incidents.

AICompiled with AI assistance from public sources and published under our editorial standards.

Editorial & sourcing policy
Recent Breaches is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data, and we do not hold the data claimed in leak-site listings. Incidents are compiled from publicly accessible sources and threat-intelligence platforms and are reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — write to support@galaxywarden.com or press@recentbreaches.com.
Check if you’re exposed →

How this breach connects

Company

Attributed to

Method

Companyscotttesting.com security record
88/100
DoxxScan™ · Low doxx risk
B 83Good record

1 reported incident on record.

See scotttesting.com’s full breach history →

More recent breaches

docol.com.br - more then 1.5TB data leaked Listed by lv Ransomware GroupNovember 22, 2021THEW ASSOCIATES HACKED. MORE THEN 50 GB SENSETIVE DATA LEAKED. Listed by lv Ransomware GroupNovember 14, 2022LAW OFFICES OF JOHN T ORCUTT WAS HACKED. MORE THEN 2TB SENSETIVE DATA LEAKED. Listed by lv Ransomware GroupNovember 9, 2022THEHURSTGROUP.CO.UK - HACKED AND MORE THEN 2000GB SENSITIVE DATA LEAKED Listed by lv Ransomware GroupNovember 2, 2022

Latest breaches

Read GalaxyWarden’s full analysis of the scotttesting.com - MORE THEN 2.5TB DATA LEAKED Listed by lv Ransomware Group →

Source: threat-actor leak-site listing

Publicly posted by lv — unverified claim, pending independent verification

Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.

Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.

ShareXLinkedInFacebookRedditWhatsAppTelegram