Ransomware victim disclosure
← All victimsNorthview Hotels & Resorts
listed as NVHG.COM · Claimed by Clop · listed 4 months ago
Status timeline
- ListedFeb 7, 2026
- Data leakeddate unknown
At a glance
- Group
- Clop
- Status
- Data leaked
- Country
- United States
- Listed on leak site
- Feb 7, 2026
About the victim
AI dossier — public-source company profileNorthview Hotels & Resorts is a United States-based owner and operator of hotels, resorts, and resort communities in high-demand destinations across the country. Active since 2004, the company has invested approximately $2 billion in acquiring and repositioning hospitality properties through strategic renovations and improved management. The firm is led by a core group of seasoned hospitality industry veterans.
- Industry
- Hotel & Resort Ownership and Operations
- Founded
- 2004
Attack summary
Severity: high — Data has been published (disclosed_status: data_published) by Clop, a prolific ransomware group known for large-scale exfiltration. A hospitality operator of this scale likely holds significant volumes of guest PII, financial records, and employee data, and confirmed publication elevates severity to high even absent a detailed inventory.Clop claims to have attacked Northview Hotels & Resorts and has moved to the data-published stage of disclosure, indicating exfiltration and publication of data; the leak post itself was non-descriptive and no specific data categories or volume were enumerated in the available excerpt.
Original description
AI-summarised, not from the leak postN/A
The leak post
captured from the group's siteYou have been placed in a queue, awaiting forwarding to the platform. Please do not refresh the page, you will be automatically redirected.
Sources
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

