Ransomware victim disclosure
← All victimsShoreline Builders
listed as shorelinenyc.com · Claimed by Lynx · listed 4 months ago
Status timeline
- Listed
Jan 30, 2026
- Data leaked
At a glance
- Group
- Lynx
- Status
- Data leaked
- Country
- United States
- Sector
- Hospitality and Tourism
- Listed on leak site
- Jan 30, 2026
About the victim
AI dossier — public-source company profileShoreline Builders is a construction company based in New York City specializing in drywall installation and related contracting services. The company emphasizes on-time, on-budget project delivery and maintains long-term client relationships. It operates with a focus on quality, safety, and craftsmanship across its projects.
- Industry
- Construction & Drywall Installation
Attack summary
Severity: medium — Data has been published (disclosed status: data_published), confirming exfiltration occurred, but no specific sensitive regulated data (PII at scale, medical, financial) is identified in the post, and no data size or detailed inventory is provided.The Lynx ransomware group claims to have attacked Shoreline Builders and has published data as part of a disclosed leak, indicating exfiltration of company data. No ransom amount or specific data volume has been stated.
Data the group says was taken
AI dossier — extracted from the leak post- Company business data
- Potentially client records
- Potentially project/contract documentation
What the group claims
Shoreline builders continuously raises the bar in excellence, quality and safety in all aspects of our company ensuring that every project is delivered on time and within budget. We pride ourselves on building strong long term relationships with our clients and delivering top quality services. Our team has an extensive knowledge and the valuable experience needed to ensure that all your drywall installation projects are completed to the highest of standards
Sources
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
