On February 28, 2026, the ransomware group RansomHouse added Irec Sas to its leak site, claiming that internal files had been exfiltrated from the French company responsible for selling tickets to amusement parks, concert venues, and sporting events. Customers who purchased tickets through Irec Sas, along with the company’s employees and business partners, may have personal information now at risk of public exposure or further criminal use.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Irec Sas
Get alerted the next time Irec Sas files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Irec Sas’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates that RansomHouse claims to have stolen internal documents during a ransomware incident at Irec Sas. The leak site entry appeared on February 28, 2026, and lists the company as a victim without immediately publishing the full dataset. Available reporting describes the exposed material as internal files, though the precise volume and exact data fields remain unconfirmed by independent verification. Irec Sas has not yet issued a public statement detailing the breach scope or notifying affected individuals.
February 28, 2026 marks the public confirmation date on the RansomHouse leak portal. The incident follows the group’s typical pattern of exfiltrating data before encrypting systems and later using the stolen information for extortion.
Why This Matters for You and Your Family
When a ticketing company like Irec Sas suffers a breach, the ripple effects reach ordinary families. Ticket purchases often require names, email addresses, phone numbers, postal addresses, and sometimes payment details. If those records were inside the internal files taken by RansomHouse, your family’s contact information could surface on dark-web marketplaces or be used to launch targeted scams.