Ransomware victim disclosure
← All victimsUrbanX PTY LTD
Claimed by radar · listed 7 months ago
Status timeline
- Listed
Oct 17, 2025
- Data leaked
At a glance
About the victim
AI dossier — public-source company profileUrbanX PTY LTD is an Australian company that provides a platform supporting real estate agents in building their own brands. Its services span branding, marketing, and IT solutions for agents. The company operates under the domain urbanx.io and is led by CEO Dan Argent.
- Industry
- Real Estate Technology & Agent Branding Services
Attack summary
Severity: high — Data has been confirmed published (data_published status) and a file listing has been posted to a Tor onion link, indicating actual exfiltration. The company handles real estate agent and client data, which may include PII and business-sensitive information, but the full scope of data is not quantified.The Radar ransomware group claims to have exfiltrated files from UrbanX PTY LTD, with data described as 'part of files' and a file listing published to a Tor-hosted URL. The disclosure status is 'data_published', indicating stolen data has been released or partially released.
Data the group says was taken
AI dossier — extracted from the leak post- Company files (partial listing)
- Internal documents
- Potentially client/agent records
The group's post references roughly 1 proof file.
What the group claims
UrbanX PTY LTD. It is an Australian company that provides a platform to support real estate agents in building their own brands, with services including branding, marketing, and IT. Email [email protected], Email Phone 1300 513 888. Contact UrbanX.io by emailing [email protected] or calling +61 402214900. The CEO, Dan Argent, can also be reached at [email protected] or [email protected]. The company's general phone number is +61 7 3613 3888. Part of files - http://4q5tsu5o3msmv4am4dfhupwhzlyg7wv3lpswbvbhcrknr4ega7xetxad.onion/TRUCCHIS_PART_OF_FILES/part of files urbanx.io filelist.txt
Source
Indexed 7 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
