Ransomware victim disclosure
← All victimsConstellation HomeBuilder Systems
Claimed by Unsafe · listed 4 hours ago
Status timeline
- ListedAug 9, 2026
- Data leakeddate unknown
At a glance
- Group
- Unsafe
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- Aug 9, 2026
About the victim
AI dossier — public-source company profileConstellation HomeBuilder Systems is a company operating in the residential construction and home building sector. Based on the victim name and leak post context, the company maintains business operations involving databases, corporate documentation, and customer/vendor communications.
- Industry
- Residential Construction & Home Building
Attack summary
Severity: medium — Confirmed exfiltration of business data including internal communications, financial records (invoices), and contact information at company scale, but no evidence of personal/regulated data at mass scale or operational disruption. Post offers private sale rather than public disclosure, suggesting moderate monetization intent.The group claims to have exfiltrated a full database containing corporate documents, contact emails, business conversations, and invoices. The operator is offering the data for private sale.
Data the group says was taken
AI dossier — extracted from the leak post- corporate database
- business documents
- corporate email accounts
- business communications
- invoices
- contact information
What the group claims
Revenue: $138.1M
The leak post
captured from the group's site``` Available full database containing all related documents, corporate contact emails, conversations, and invoices. If you’re interested in purchasing it privately, please contact me through the contact page. ```
Sources
Source
Indexed 4 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

