NoEscape

Dark since December 5, 2023
124 victims named on the leak site
0 in the last 30 days
0 in the last 12 months
Jun 2023 first victim we recorded
Dec 5, 2023 most recent victim posted
4 leak sites tracked

Data as of August 16, 2026.

Credential exposure before the attack

2.4% of NoEscape victims whose domain we can identify (3 of 124) had employee credentials leak in the 12 months before NoEscape named them as a victim.

We don't know whether any of these credentials were how NoEscape gained initial access.

What industries NoEscape targets

Sector identified for 55 of 124 victims.

Manufacturing11
Healthcare9
Education8
Construction7
Financial Services6
Logistics3
Agriculture2
Legal2

Where the victims are located

Country identified for 54 of 124 victims.

United Kingdom9
France8
Germany5
Italy4
Australia4
Netherlands3
Spain3
Colombia2

Most recent NoEscape victims

VictimSectorCountryPosted
Nida nida.comManufacturingNot identifiedDec 5, 2023
UF Resources ufresources.comEducationNot identifiedDec 5, 2023
Grupo Prides com.comNot identifiedNot identifiedDec 1, 2023
Science History Institute sciencehistory.orgNot identifiedNot identifiedNov 30, 2023
Verdecora verdecora.esRetailSpainNov 30, 2023
Talentum talentum.com.coNot identifiedColombiaNov 27, 2023
Enware enware.com.auManufacturingAustraliaNov 21, 2023
R.C. Moore rcmoore.comLogisticsNot identifiedNov 21, 2023
Kwik kwikind.comAutomotiveNot identifiedNov 20, 2023
PruittHealth pruitthealth.comHealthcareNot identifiedNov 20, 2023
carespring.comHealthcareNot identifiedNov 14, 2023
landercountynv.orgNot identifiedNot identifiedNov 14, 2023
sosbonedocs.comNot identifiedNot identifiedNov 14, 2023
mprlift.seManufacturingSwedenNov 13, 2023
pargroup.comNot identifiedNot identifiedNov 13, 2023
putzelelectric.comConstructionNot identifiedNov 13, 2023
Action Sante Travail actionsantetravail.frNot identifiedFranceNov 10, 2023
Ezi Floor ezifloor.com.auManufacturingAustraliaNov 10, 2023
Jeffcoat jeffcoat.usNot identifiedUnited StatesNov 10, 2023
Avianor avianor.comManufacturingNot identifiedNov 8, 2023

Showing the 20 most recent of 124. Browse recent data breaches for more.

NoEscape leak sites

Addresses we've seen NoEscape publish victims from. Any .onion address needs the Tor Browser.

  • noescapemsqxvizdxyl7f7rmg5cdjwp33pg2wpmiaaibilb4btwzttad.onion
  • rhysidafohrhyy2aszi7bm32tnjat5xri65fopcxkdfxhi4tidsg7cad.onion
  • alphvmmm27o3abo3r2mlmjrpdmzle3rykajqc5xsj7j7ejksbpsa36ad.onion
  • www.sendspace.com

NoEscape questions

Is NoEscape still active?

Not for over a year. The last victim we recorded was December 5, 2023. The leak site has published nothing since, though the data it already leaked is still out there.

How many victims has NoEscape claimed?

NoEscape has named 124 victims on its leak site since we started tracking it. That counts organizations, not leaked files. A single victim often accounts for thousands of published files.

When did NoEscape first appear?

The first victim we recorded for NoEscape was posted on June 12, 2023. That's when the group entered our collection, which isn't necessarily when it started operating.

Which sectors does NoEscape target?

Manufacturing accounts for the most victims we can classify, with 11. Healthcare follows at 9. We could identify a sector for 55 of 124 victims, so treat this as the shape of the targeting rather than a full census.

Has NoEscape already got your credentials?

Check whether your employees' logins have leaked on the dark web before they're exploited.

Check your exposure →

Continuous dark web monitoring alerts you when your company's data shows up, whether that's employee credentials or files published after an attack.