Ransomware victim disclosure
← All victimsEmpireWorks
Claimed by Qilin · listed 3 hours ago
Status timeline
- ListedAug 17, 2026
- Data leakeddate unknown
At a glance
- Group
- Qilin
- Status
- Data leaked
- Listed on leak site
- Aug 17, 2026
About the victim
AI dossier — public-source company profileEmpireWorks is a reconstruction company operating in the United States, serving as a major player in the reconstruction sector with a significant customer base indicated by 420+ 5-star reviews and a customer support phone line.
- Industry
- Construction & Reconstruction
Attack summary
Severity: low — No operational disruption details, data types, or proof files are documented in the available leak post. The disclosure appears to be listing/announcement only without substantiation.The Qilin group claims to have attacked EmpireWorks. No specific details about encryption, exfiltration, or data types are provided in the available leak post excerpt.
What the group claims
N/A
Sources
Source
Indexed 3 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

