Ransomware victim disclosure
← All victimsHoliday Palace
listed as www.holidaypalace.com · Claimed by Stormous · listed 5 months ago
Status timeline
- Listed
Dec 8, 2025
- Data leaked
At a glance
- Group
- Stormous
- Status
- Data leaked
- Country
- KH
- Sector
- Hospitality and Tourism
- Listed on leak site
- Dec 8, 2025
About the victim
AI dossier — public-source company profileHoliday Palace is a luxury classic-style hotel located in Poipet, Cambodia, situated steps from the Thai-Cambodia border crossing at Aranyaprathet. The property offers multiple room categories, several dining venues (including Chinese and Indonesian restaurants), a café, duty-free shopping, and entertainment facilities. It caters primarily to Thai and international travelers seeking leisure and accommodation in the Poipet border zone.
- Industry
- Hospitality & Hotel (Border Resort/Casino Hotel)
- Address
- Poipet, Banteay Meanchey, Cambodia (near Thai-Cambodia border crossing)
Attack summary
Severity: critical — The breach includes government-issued identity documents (passports and ID cards), combined with PII (full name, DOB, contact details) and financial/payment data at scale — constituting regulated sensitive data exposure affecting international hotel guests.Stormous claims to have obtained full system access and exfiltrated all data, including guest user information, payment and booking records, and identity documents (ID cards and passports) used during booking processes, with the data now offered for sale.
Data the group says was taken
AI dossier — extracted from the leak post- Guest email addresses
- Guest phone numbers
- Guest full names
- Dates of birth
- Payment data
- Booking data
- ID card scans
- Passport scans
- Full system access credentials
What the group claims
All of this data is offered for sale (user information: email, phone number, full name, date of birth / payment and booking data / ID cards and passports used in booking processes / full access was obtained to the system and all data was extracted).
Sources
- Victim sitewww.holidaypalace.com
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
