// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE BRC-newsDTG 0600Z
ColdRecon / Breach Radar / Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF)
Breach Record

Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF)

DISCLOSED 2026-09-02 · RANSOMWARE · RANSOMWARE

The Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) confirmed a breach involving data on criminal targets. The Qilin ransomware gang claimed responsibility on its leak site. No details on the number of records exposed or the attack method were provided.

The record

What we know

Disclosed
2026-09-02
Attack vector
Ransomware
Sector
Government
Country
United States
Data classes exposed
data on ATF criminal targets
RANSOMWARE
ColdRecon assessment

Could a positive-security control have prevented this?

Verdict · unclear · opinion

Insufficient details about the attack vector and endpoint involvement to assess whether a positive-security model would have prevented this breach.

Our assessments are opinion, grounded in the cited public facts. Read them critically.

Sources

Cited reporting

Similar vector · recent

Other ransomware breaches on file

This page is the permanent ColdRecon entry for the Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) disclosure. It updates if new public reporting emerges. All tracked breaches →

Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) just lived through this. Your next prospect doesn't have to.

ColdRecon turns every disclosed breach into a daily intelligence brief from the seller's seat — normalized to the factors that move a deal, written in the Handler's voice. Request clearance and the first lands tomorrow at 0600.

Request Clearance →