Recsa was listed by the Qilin ransomware group on their leak site in July 2026. This indicates a claimed extortion or leak-site post from the ransomware group. The specific details of what happened, such as the types of data exposed, the number of individuals affected, or the geographic impact, are not publicly confirmed. The current information does not provide details on notification letters, official statements, state attorney general filings, or legal actions.