// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE BRC-newsDTG 0600Z
Breach Record

FTAPI

DISCLOSED 2026-10-01 · RANSOMWARE · RANSOMWARE

FTAPI, a file transfer platform, confirmed a security incident after The Gentlemen ransomware gang claimed to have breached the company. The attackers said they would release data in 5 days. FTAPI stated that attackers reached one internal server, but not customer systems or transferred data.

The record

What we know

Disclosed
2026-10-01
Attack vector
Ransomware
Sector
software
RANSOMWARE ENDPOINT INVOLVED
ColdRecon assessment

Could a positive-security control have prevented this?

Verdict · unclear · opinion

OPINION: A positive-security model might have prevented unauthorized changes on the internal server if the ransomware attempted to modify files or processes, but without details on the initial access vector or whether the server was a critical endpoint, it is unclear if allowlisting would have blocked the attack.

Our assessments are opinion, grounded in the cited public facts. Read them critically.

Sources

Cited reporting

Similar vector · recent

Other ransomware breaches on file

This page is the permanent ColdRecon entry for the FTAPI disclosure. It updates if new public reporting emerges. All tracked breaches →

FTAPI just lived through this. Your next prospect doesn't have to.

ColdRecon turns every disclosed breach into a daily intelligence brief from the seller's seat — normalized to the factors that move a deal, written in the Handler's voice. Request clearance and the first lands tomorrow at 0600.

Request Clearance →