RANSOMWARE VICTIMEDUCATIONDUPLICATE CLAIM

Notre-Dame du Grandchamp

www.nd-grandchamp.fr
NIGHTSPIRE📍 France (FR)📅 March 22, 2026
8
same group

Attack Intelligence

Notre-Dame du Grandchamp was compromised in a ransomware attack attributed to NIGHTSPIRE in March 2026. The organization, operating in the Education sector in France, was added to the group's data leak site as part of an extortion campaign.

NIGHTSPIRE operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

- Students Medical Records- HR& Employee Personal Data- Student Personal & Academic Data- Contracts & Administrative Documents

Additional Details

data_size
330GB

Other Victims — NIGHTSPIRE (8)

Quick Facts

CountryFrance (FR)
SectorEducation
Attack DateMar 22, 2026
Domainwww.nd-grandchamp.fr
Intel Sourceransomware.live
StatusDUPLICATE CLAIM

Threat Group

NIGHTSPIRE
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.