DXS International data exposed after Devman breach
Data Leak
Summary
Hide ▲
Show ▼
Devman claimed to have stolen 300GB of data from DXS International and threatened to publish it on 20 December, creating a risk of public exposure of company data. The claim is still unconfirmed by the victim or NHS bodies. The main significance is the possibility of sensitive data release even though the company says its services were not materially disrupted.
Related Happenings
DXS International hit by cyberattack
Incident
First: 22.12.2025 13:15
Last: 22.12.2025 13:15
Sources 1
How related:
DXS International said the incident was discovered on December 14 and affected its office servers.
About this happening:
**DXS International** confirmed a **cyber-attack** that hit **its office servers**, creating a localized operational disruption for the **UK-based NHS supplier** while **front-lin...
DXS International hit by cyberattack
IncidentHow related: DXS International said the incident was discovered on December 14 and affected its office servers.
About this happening: **DXS International** confirmed a **cyber-attack** that hit **its office servers**, creating a localized operational disruption for the **UK-based NHS supplier** while **front-lin...
Barts Health NHS Trust invoice leak on Cl0p leak portal
Data Leak
First: 05.12.2025 20:55
Last: 05.12.2025 20:55
Sources 1
About this happening:
The **Barts Health NHS Trust** data leak became public when **Cl0p** posted stolen **invoice files** on its **dark-web leak portal**, exposing **full names and addresses** linked...
Barts Health NHS Trust invoice leak on Cl0p leak portal
Data LeakAbout this happening: The **Barts Health NHS Trust** data leak became public when **Cl0p** posted stolen **invoice files** on its **dark-web leak portal**, exposing **full names and addresses** linked...
Latest development: 08.12.2025 11:30
Barts Health NHS Trust is seeking a High Court order to stop the sharing, publication or use of invoice files stolen from its Oracle E-business Suite (EBS) database; the trust says Cl0p posted the files on the dark web, and it is working with NHS England, the National Cyber Security Centre, the Metropolitan Police and regulators including the Information Commissioner’s Office while its clinical systems remain unaffected.
Timeline
-
22.12.2025 13:15 2 articles · 5mo ago
DXS International discovers cyber-attack and Devman posts data claim
Initial DisclosureOn 14 December, DXS International discovered a cyber-attack that affected its office servers, immediately contained the incident, and began an investigation with NHS England and an external cyber security specialist agency. On the same day, Devman listed DXS International on a data leak site and claimed to have stolen 300GB of data.
Show sources
- UK: NHS Supplier Confirms Cyber-Attack, Operations Unaffected — www.infosecurity-magazine.com — 22.12.2025 13:15
- UK: NHS Supplier Confirms Cyber-Attack, Operations Unaffected — www.infosecurity-magazine.com — 22.12.2025 13:15
-
22.12.2025 13:15 1 articles · 5mo ago
DXS International discloses incident details and limited service impact
Victim Impact UpdateOn 18 December, DXS International told the London Stock Exchange that the incident had been discovered on 14 December and affected its office servers. The company said front-line clinical services remained unaffected and operational, and that it had notified the ICO and various NHS bodies.
Show sources
- UK: NHS Supplier Confirms Cyber-Attack, Operations Unaffected — www.infosecurity-magazine.com — 22.12.2025 13:15
-
22.12.2025 13:15 1 articles · 5mo ago
Devman threatens release of alleged DXS International data
Campaign Scope UpdateOn 20 December, Devman threatened to release the alleged 300GB of data taken from DXS International, extending the data-leak campaign timeline beyond the initial leak-site listing.
Show sources
- UK: NHS Supplier Confirms Cyber-Attack, Operations Unaffected — www.infosecurity-magazine.com — 22.12.2025 13:15