Ransomware victim disclosure
← All victimsLunsford Capital
Claimed by Qilin · listed 5 months ago
Status timeline
- ListedJan 14, 2026
- Data leakeddate unknown
At a glance
- Group
- Qilin
- Status
- Data leaked
- Country
- United States
- Sector
- Financial Services
- Listed on leak site
- Jan 14, 2026
About the victim
AI dossier — public-source company profileLunsford Capital, LLC is a private investment company headquartered in Louisville, Kentucky, chaired by Bruce Lunsford. The firm invests across a wide range of sectors including healthcare, technology, entertainment, and real estate, with a focus on individuals with innovative ideas. It is a small, principal-led firm with a lean executive team.
- Industry
- Private Investment & Venture Capital
- Address
- 4360 Brownsboro Road, Suite 305, Louisville, Kentucky 40207
Attack summary
Severity: high — Data has been published by the group against a private investment firm handling financial and potentially sensitive portfolio/investor data; confirmed exfiltration implied by 'data_published' status, with financial services data at risk.Qilin claims to have compromised Lunsford Capital and has published data (disclosed status: data_published), though the leak post excerpt does not specify whether encryption, exfiltration, or both occurred, nor does it detail the volume or nature of the data released.
Data the group says was taken
AI dossier — extracted from the leak post- Potentially financial investment records
- Executive contact information
- Portfolio company data
What the group claims
N/A
The leak post
captured from the group's siteLaw Firms & Legal Services [John G Yphantides A Professional Law](http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion/site/blog?uuid=1e464ce5-6e74-4e62-be0b-eac503e43af8) Law Firms & Legal Services Law Firms & Legal Services [Keller Williams Real Estate - Exton](http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion/site/blog?uuid=ac8e3226-6965-4f8e-a2d5-53a0dbce8535)
Sources
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

