BYOD

Active
3 victims named on the leak site
3 in the last 30 days
3 in the last 12 months
Oct 2026 first victim we recorded
Oct 5, 2026 most recent victim posted
1 leak site tracked

Data as of October 5, 2026.

What industries BYOD targets

Sector identified for 1 of 3 victims.

Manufacturing1

Where the victims are located

Country identified for all 3 victims.

United States2
Malaysia1

Every BYOD victim

VictimSectorCountryPosted
eTeam eteaminc.comNot identifiedUnited StatesOct 5, 2026
Royal Selangor royalselangor.comManufacturingMalaysiaOct 5, 2026
Trump Mobile trumpmobile.comNot identifiedUnited StatesOct 5, 2026

Browse recent data breaches for more.

BYOD leak site

The address we've seen BYOD publish victims from. Any .onion address needs the Tor Browser.

  • byodxn5s7sua6oyyjj74rycgn6afncfckprt5ezskt3cni6lg3wdrgad.onion

BYOD questions

Is BYOD still active?

Yes. BYOD posted its most recent victim on October 5, 2026. That's 3 victims in the last 30 days.

How many victims has BYOD claimed?

BYOD has named 3 victims on its leak site since we started tracking it. That counts organizations, not leaked files. A single victim often accounts for thousands of published files.

When did BYOD first appear?

The first victim we recorded for BYOD was posted on October 5, 2026. That's when the group entered our collection, which isn't necessarily when it started operating.

Has BYOD already got your credentials?

Check whether your employees' logins have leaked on the dark web before they're exploited.

Check your exposure →

Continuous dark web monitoring alerts you when your company's data shows up, whether that's employee credentials or files published after an attack.