Skip to content
[BARRACUDA] – Ransomware Victim: i2i

[BARRACUDA] – Ransomware Victim: i2i

Redpacketsecurity admin September 13, 2026

Verification alert Listings attributed to BARRACUDA have been reported as including unverified or fabricated victim claims. Treat this post as unconfirmed until corroborated with independent evidence. See further information here: BankInfoSecurity

See further information here: BankInfoSecurity

NOTE: No files or stolen information are exfiltrated, downloaded, taken, hosted, seen, reposted, or disclosed by RedPacket Security. Any legal issues relating to the content should be directed at the attackers, not RedPacket Security. This blog is an editorial notice informing that a company has fallen victim to a ransomware attack. RedPacket Security is not affiliated with any ransomware threat actors or groups and will not host infringing content. The information on this page is automated and redacted whilst being scraped directly from the BARRACUDA Onion Dark Web Tor Blog page.

AI Generated Summary of the Ransomware Leak Page

On September 13, 2026, a leak-site post associated with the Barracuda ransomware group listed the Turkish technology company i2i-systems as a victim. No separate compromise date is provided, so September 13, 2026, should be treated as the post date rather than a confirmed intrusion date. The post claims that the attackers spent approximately one week moving through i2i-systems’ network, alleging weak security configurations and inadequate protection of corporate data. It describes the incident as a data-leak operation, with no claim that systems were encrypted. The attackers claim to have exfiltrated 693 GB of data, including databases, Linux-system backups, and other critical infrastructure data. The post further claims that approximately 44 GB of the stolen material consists of source code from multiple development projects and software packages, including full snapshots of recent repository releases. It also alleges that data from systems connected to external organizations and joint projects was obtained, including customer-related database information; these claims are not independently verified. The post states that the data will be published and marks the listing as “selling,” with a claimed ransom or sale figure of $300,000. A separate size indicator on the page lists 643 GB, creating a discrepancy with the 693 GB exfiltration claim. No screenshots or other images are included in the post.

On September 13, 2026, a leak-site post associated with the Barracuda ransomware group listed the Turkish technology company i2i-systems as a victim. No separate compromise date is provided, so September 13, 2026, should be treated as the post date rather than a confirmed intrusion date. The post claims that the attackers spent approximately one week moving through i2i-systems’ network, alleging weak security configurations and inadequate protection of corporate data. It describes the incident as a data-leak operation, with no claim that systems were encrypted. The attackers claim to have exfiltrated 693 GB of data, including databases, Linux-system backups, and other critical infrastructure data.

The post further claims that approximately 44 GB of the stolen material consists of source code from multiple development projects and software packages, including full snapshots of recent repository releases. It also alleges that data from systems connected to external organizations and joint projects was obtained, including customer-related database information; these claims are not independently verified. The post states that the data will be published and marks the listing as “selling,” with a claimed ransom or sale figure of $300,000. A separate size indicator on the page lists 643 GB, creating a discrepancy with the 693 GB exfiltration claim. No screenshots or other images are included in the post.

A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on Patreon or Buy Me A Coffee using the buttons below.

Extracted Entities

Attack Types (2)

Companies (2)

Industries (1)

Platforms (2)