Currently free during beta - premium features coming soon. Subscribe now to lock in early access.

Breach: CTT (468,124 accounts) — Email addresses, Names, Phone numbers

BREACH Breaches & Incidents · · hibp

AI Analysis

[claim-framed]On 2026-04-26, Have I Been Pwned published a listing attributed to a ransomware group's leak site, claiming an incident involving CTT and 468,124 accounts. The posting alleges exposure of email addresses, names, and phone numbers. CTT has not confirmed this claim. Leak-site claims are frequently exaggerated, false, or misattributed, and may refer to a third party rather than the named organisation.

Compliance teams should treat this as unverified. Contact CTT directly and request a written statement addressing the claim. Do not act on it as a confirmed incident, notify customers, or escalate internally until the organisation provides clarification. No further action is warranted based solely on the posting.

Get notified about BREACH changes

Subscribe to our free weekly digest covering 24 compliance frameworks.