Ransomware victim disclosure
← All victimsIOTA HOTEL TBILISI
Claimed by Nightspire · listed 3 months ago
Status timeline
- ListedMar 3, 2026
- Data leakeddate unknown
At a glance
- Group
- Nightspire
- Status
- Data leaked
- Country
- Georgia
- Sector
- Hospitality and Tourism
- Listed on leak site
- Mar 3, 2026
About the victim
AI dossier — public-source company profileIOTA Hotel Tbilisi is a hotel property located in Tbilisi, Georgia, operating under the IOTA Hotels brand. The property caters to guests seeking accommodation in the Georgian capital. Based on the public site, IOTA Hotels appears to be a boutique or independent hotel brand.
- Industry
- Hospitality & Hotels
- Address
- Tbilisi, Georgia
Attack summary
Severity: high — Confirmed exfiltration and publication of passport documents (government-issued PII) and financial records alongside VIP guest lists constitutes regulated personal data exposure at meaningful sensitivity, warranting a high severity rating.The Nightspire ransomware group claims to have exfiltrated data from IOTA Hotel Tbilisi, with the disclosed status indicating data has been published. Stolen data reportedly includes VIP guest lists, invoices, passport documents, and financial records.
Data the group says was taken
AI dossier — extracted from the leak post- VIP guest lists
- Passport documents
- Invoices
- Financial documents
What the group claims
- VIP Lists- Invoices, Passport...- Financial Documents
Sources
- Victim siteiotahotels.com
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

