Ransomware victim disclosure
← All victimsConwest Developments
listed as CONWEST.COM · Claimed by Clop · listed 4 months ago
Status timeline
- ListedFeb 7, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileConwest Developments is a privately owned and operated real estate developer based in Vancouver, British Columbia, Canada, founded in 1991. The company specializes in delivering commercial, industrial, and residential spaces across Greater Vancouver, including strata warehouses, industrial units, and residential projects. It also offers homeowner care and tenant services in partnership with property and strata management companies.
- Industry
- Real Estate Development (Commercial, Industrial & Residential)
- Address
- Unit 401, 1930 Pandora Street, Vancouver, BC V5L 0C7, Canada
- Founded
- 1991
Attack summary
Severity: high — Data is marked as published by Clop, a group known for mass exfiltration campaigns. A private real estate developer would hold significant business data including financial records, contracts, employee PII, and customer/tenant information. Confirmed data publication by Clop elevates severity to high even without specific inventory details.Clop ransomware group claims an attack on Conwest Developments with a disclosed status of data_published, indicating data has been exfiltrated and published. The leak post itself was non-informative (a redirect queue page), so specific details about the nature of encrypted or exfiltrated data are not available from the post.
Data the group says was taken
AI dossier — extracted from the leak post- Unknown — leak post content not available
Original description
AI-summarised, not from the leak postN/A
The leak post
captured from the group's siteYou have been placed in a queue, awaiting forwarding to the platform. Please do not refresh the page, you will be automatically redirected.
Sources
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

