ShellCodeX
Tools • Events • News • Insights
Victim Claim

College O'Sullivan de Québec

kairos 🇨🇦 Canada Education osullivan.edu
Claimed by kairos
Listed on leak site 20 Jul 2026
Reported attack date 20 Jul 2026
Group claims tracked 16
Unverified claim. This entry reproduces a listing published by the kairos group on its own extortion site. Attackers routinely exaggerate or fabricate victims. Nothing here confirms that College O'Sullivan de Québec suffered a breach, or what data was actually taken.

About the organisation

Collège O'Sullivan de Québec offers a variety of training programs both in-class and online, focusing on fields such as administration, insurance, office management, IT, web development, and marketing. The institution aims to equip students with the skills needed for the job market and higher education through quality resources and personalized services. Their target clients include secondary school students, international students, and businesses seeking tailored training solutions. With over 80 years of history, the college is committed to fostering professional and personal competencies among its graduates.

What the listing means

College O'Sullivan de Québec appeared on the kairos leak site on 20 July 2026. Groups publish a victim once negotiations stall or as pressure during them, so a listing usually means data was already exfiltrated. This group has published 4 claims in the last 30 days and remains active.

Recommended actions

  • Treat any unsolicited message referencing College O'Sullivan de Québec as suspicious — leaked data gets weaponised for phishing within days.
  • If you hold an account on osullivan.edu, change that password now, update it anywhere you reused it, and enable two-factor authentication.
  • Other Education organisations should review this group's known TTPs and validate detection coverage against them.
  • Watch for follow-on extortion: stolen data is often re-leaked or resold after the initial listing.
  • A leak-site listing is a claim made by the attacker, not a confirmed breach — check the organisation's own disclosures before acting on it.

Leak-site evidence

Listing URL https://www.ransomware.live/id/Q29sbGVnZSBPJ1N1bGxpdmFuIGRlIFF1w6liZWNAa2Fpcm9z