Leak of confidential information

GordonFreeman calls for an attack on RAPIKOM

On March 8, 2026, a threat actor operating under the alias GordonFreeman leaked a database containing approximately 5,000 commercial records belonging to RAPIKOM, a Venezuelan installment shopping / affiliate-based e-commerce platform (BNPL model, a competitor of Cashea). The compromised data, which was published on darkforums.su, reportedly included bank accounts, phone numbers, email addresses, RIFs, payment details, and passwords. This incident occurred alongside a series of similar cyberattacks targeting other Venezuelan technology platforms during the same period.

Overview

Missing evidence

The exact domain name for RAPIKOM is not specified.The full external links to ibb.co and limewire.com are not visible.

Impact details

5,000 Exposed records

According to public reports, GordonFreeman is blamed for an alleged data breach at Rapikom affecting approximately 5,000 company and member records, including credentials, contact information, RIF/tax ID numbers, addresses/geolocation, and payment and commission details. No official confirmation from RAPIKOM or independent forensic validation has been found.

credentialsemail addressesphone numberstax identifiersphysical addressesgeolocation

Classification & severity

Category
Information content security
Subtype
Leak of confidential information
Confidence
Medium

Severity assessment

High
Information impact
Credentials
Affected scope
Multiple users
Critical service
Potential
Public confidence
Moderate

The complaint includes credentials, tax ID numbers, contact information, and geolocation data, as well as payment and commission data from merchant affiliates. It continues to receive public coverage without official confirmation from RAPIKOM.

Data exfiltration· Claimed Confidentiality

Timeline

Claim

GordonFreeman listed RAPIKOM as a presumed victim.

Evidence & sources

5 sources