GordonFreeman calls for an attack on RAPIKOM
On March 8, 2026, a threat actor operating under the alias GordonFreeman leaked a database containing approximately 5,000 commercial records belonging to RAPIKOM, a Venezuelan installment shopping / affiliate-based e-commerce platform (BNPL model, a competitor of Cashea). The compromised data, which was published on darkforums.su, reportedly included bank accounts, phone numbers, email addresses, RIFs, payment details, and passwords. This incident occurred alongside a series of similar cyberattacks targeting other Venezuelan technology platforms during the same period.
Overview
Missing evidence
Impact details
5,000 Exposed records
According to public reports, GordonFreeman is blamed for an alleged data breach at Rapikom affecting approximately 5,000 company and member records, including credentials, contact information, RIF/tax ID numbers, addresses/geolocation, and payment and commission details. No official confirmation from RAPIKOM or independent forensic validation has been found.
Classification & severity
- Category
- Information content security
- Subtype
- Leak of confidential information
- Confidence
- Medium
Severity assessment
High- Information impact
- Credentials
- Affected scope
- Multiple users
- Critical service
- Potential
- Public confidence
- Moderate
The complaint includes credentials, tax ID numbers, contact information, and geolocation data, as well as payment and commission data from merchant affiliates. It continues to receive public coverage without official confirmation from RAPIKOM.
Timeline
GordonFreeman listed RAPIKOM as a presumed victim.