All ransomware incidents
Ransomware group thegentlemen hits Librería Santa Fe
Librería Santa Fe — a retail & e-commerce target operating in AR has been listed by the thegentlemen ransomware group on 2026-09-14. The information below reflects what the threat actor has publicly claimed on their leak site; the details have not been independently verified.
Incident Report
| Target Organization | Librería Santa Fe |
|---|---|
| Threat Group | thegentlemen |
| Summary | santafelibros.com.ar Librería Santa Fe APS S.R.L. is an Argentine book retailer and distributor from Buenos Aires — founded 1996 (SIC 5942 Book Stores, Active status), operating a chain of bookstores (named after Avenida Santa Fe, the city's legendary book district in Barrio Norte) plus B2B book/stationery distribution to schools and institutions across Argentina, with traces in Italian business aggregators (export/Italy-linked operations). Classic family bookselling business — pre-Amazon era model: retail + distribution. Bottom line: a Buenos Aires book chain riding the avenue that made the city UNESCO's 2011 World Book Capital. |
| Date of Breach | 2026-09-14 |
| Discovery Date | 2026-09-15 |
| Region | AR |
| Target Domain | santafelibros.com.ar |
| Business Sector | Retail & E-Commerce |
| Severity | MEDIUM |
Claim by thegentlemen
santafelibros.com.ar Librería Santa Fe APS S.R.L. is an Argentine book retailer and distributor from Buenos Aires — founded 1996 (SIC 5942 Book Stores, Active status), operating a chain of bookstores (named after Avenida Santa Fe, the city's legendary book district in Barrio Norte) plus B2B book/stationery distribution to schools and institutions across Argentina, with traces in Italian business aggregators (export/Italy-linked operations). Classic family bookselling business — pre-Amazon era model: retail + distribution. Bottom line: a Buenos Aires book chain riding the avenue that made the city UNESCO's 2011 World Book Capital.
Posted by the thegentlemen threat actor on its public leak site. This is the group's own statement and has not been independently verified by HackerFeeds.
Disclaimer
HackerFeeds does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.

