Ransomware victim disclosure
← All victimsJangho Group (江河创建集团股份有限公司)
listed as Jangho Group · Claimed by Hunters · listed 2 years ago
Status timeline
- ListedAug 2, 2024
- Data leakeddate unknown
At a glance
- Group
- Hunters
- Status
- Data leaked
- Country
- China
- Sector
- Business Services
- Listed on leak site
- Aug 2, 2024
About the victim
AI dossier — public-source company profileJangho Group is a large Chinese conglomerate headquartered in Beijing operating across construction materials, architectural decoration, and healthcare. Major business lines include curtain wall systems (Jangho Curtain Wall), architectural decoration (Hong Yuan Decoration), photovoltaic energy (Jangho PV), and ophthalmology clinics (Vision Eye Care). The group manages multiple subsidiaries across mainland China and international projects.
- Industry
- Building Materials & Construction Services (curtain walls, architectural decoration, photovoltaic systems, ophthalmology clinics)
- Address
- China (Beijing registration implied from ICP filing, specific street address not publicly stated)
- Employees
- 400+
Attack summary
Severity: medium — Confirmed exfiltration and encryption of a large multinational enterprise, but no specific sensitive data categories disclosed and no proof files detailed in the available post excerpt. Medium severity reflects operational disruption risk to a significant company without confirmed high-sensitivity data exposure details.The hunters group claims to have both encrypted systems and exfiltrated data from Jangho Group in China. No specific data categories or operational impact details are provided in the available post excerpt.
What the group claims
Country : China - Exfiltraded data : yes - Encrypted data : yes
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

