Skip to main content
Back to overview
High

OFS Brands (Presumed) Claimed by Clop Ransomware Group

The Clop ransomware group claimed to have breached 'ofs-p#####', presumed to be OFS Brands (ofs.com), on December 24, 2024.

Key points

  • Clop ransomware group claimed a breach of 'ofs-p#####', presumed to be OFS Brands.
  • Claim was discovered on December 24, 2024.
  • Clop stated they have data from companies using 'cleo'.

Connected intelligence

Signal brief

Follow the organization, likely method and potential impact to explore connected Shadow Tier intelligence.

02

Likely method

Ransomware

Threat source not confirmed

03

Potential impact

Potential operational disruption

Availability

Published
Dec 24, 2024
Updated
Jul 1, 2026
Confidence
High
Evidence
1 source

Structured assessment

Signal analysis

It helps compare this signal with other published signals without treating the labels as final determinations.

Threat source

Threat source not confirmed

Watch ransomware, endpoint compromise and business interruption exposure.

Business impact

Potential operational disruption
Impact area
Availability

Mentioned entities

OfsOFS BrandsPresumedClaimedClop Ransomware Group The ClopClopOFS Brands. Claim

Quick context

Questions about this signal

What happened in this signal?

The Clop ransomware group claimed to have breached 'ofs-p#####', presumed to be OFS Brands (ofs.com), on December 24, 2024. The group's announcement indicated they had data from many companies using 'cleo' and were reaching out to the victim company.

When was this signal reported?

Shadow Tier lists Dec 24, 2024 as the signal date.

Which organization is connected to this signal?

Ofs is the organization connected to this public signal.

Explore Ofs
Which attack pattern is relevant?

This signal is connected to current ransomware incidents based on its reported incident context.

Explore current ransomware incidents