Ransomware victim disclosure
← All victims众信旅游集团股份有限公司
listed as www.utourworld.com · Claimed by blackwater · listed 6 hours ago
Status timeline
- Listed
Jun 6, 2026
- Data leaked
At a glance
- Group
- blackwater
- Status
- Data leaked
- Sector
- Hospitality and Tourism
- Listed on leak site
- Jun 6, 2026
About the victim
AI dossier — public-source company profile众信旅游 (Zhongxin Tourism Group Co., Ltd.) is a Chinese travel conglomerate founded in 2005 and publicly listed on the Shenzhen Stock Exchange (stock code: 002707) since 2014. The company operates as a comprehensive outbound and domestic travel service provider with over 1,000 retail outlets across China, serving 2+ million tourists annually and offering outbound tours, domestic travel, study abroad, immigration services, and travel finance.
- Industry
- Travel & Tourism Services
- Address
- Beijing, China (registered; multiple offices nationwide)
- Employees
- 1000+
- Founded
- 2005
Attack summary
Severity: medium — Threat of data publication with no proof files yet shown; company is a major listed entity handling customer travel records and personal data, but lack of specifics on data scope or confirmed exfiltration prevents higher classification.Blackwater ransomware group claims to have compromised 众信旅游 and states that confidential data will be published. No specific details on exfiltration vs. encryption-only, or data categories, are provided in the post.
Data the group says was taken
AI dossier — extracted from the leak post- company confidential data (unspecified)
What the group claims
Confidential data will be published soon
Sources
Source
Indexed 6 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
