Ransomware victim disclosure
← All victimsHudson Executive Capital
listed as HUDSONEXECUTIVE.COM · Claimed by clop · listed 3 months ago
Status timeline
- Listed
Feb 14, 2026
- Data leaked
At a glance
- Group
- clop
- Status
- Data leaked
- Country
- United States
- Sector
- Financial Services
- Listed on leak site
- Feb 14, 2026
About the victim
AI dossier — public-source company profileHudson Executive Capital LP is a New York-based activist investment management firm that manages concentrated equity portfolios and engages with public company management teams. The firm focuses on value-oriented investments in the financial services and other sectors. It was founded by Douglas Braunstein, former CFO of JPMorgan Chase.
- Industry
- Investment Management & Private Equity
- Employees
- 11-50
- Founded
- 2015
Attack summary
Severity: high — Clop is known for data exfiltration campaigns; the status is 'data_published' indicating data has been released. As an investment management firm, exposed data likely includes sensitive financial, investor, and business records, though no specific volume or regulated data confirmation is available from the post.The Clop ransomware group claims to have attacked Hudson Executive Capital and has listed the victim with a disclosed/data_published status, suggesting exfiltration and publication of company data, though the specific leak post content was not rendered.
Data the group says was taken
AI dossier — extracted from the leak post- Financial records
- Investment portfolio data
- Employee PII
- Client/investor information
- Internal communications
Original description
AI-summarised, not from the leak postHudson Executive Capital LP is a SEC-registered investment advisor based in New York City. Founded in 2015, the company employs a constructive engagement investment approach, focusing on supporting well-performing businesses in delivering long-term growth. It collaborates with leading businesses and executives across different industry sectors. However, it specializes in Financials, Healthcare, Technology, and Media industries.
The leak post
captured from the group's siteYou have been placed in a queue, awaiting forwarding to the platform. Please do not refresh the page, you will be automatically redirected.
Sources
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
