Ransomware victim disclosure
← All victimsJK Capital Management Limited
Claimed by Orova · listed 3 hours ago
Status timeline
- ListedAug 4, 2026
- Data leakeddate unknown
At a glance
- Group
- Orova
- Status
- Data leaked
- Country
- Hong Kong SAR China
- Sector
- Financial Services
- Listed on leak site
- Aug 4, 2026
About the victim
AI dossier — public-source company profileJK Capital Management Limited is a Hong Kong-based asset management company established in 1997, regulated by the Securities and Futures Commission of Hong Kong. The firm specializes in high-conviction, absolute return portfolio management across Asian securities (equities and fixed income), with a client base spanning Europe and US institutional investors, managing Luxembourg-registered SICAV mutual funds.
- Industry
- Asset Management & Investment
- Address
- Hong Kong
- Founded
- 1997
Attack summary
Severity: medium — Financial services firm handling regulated investment assets and client records; regulated status and international fund distribution suggest sensitive financial and personal data at risk. However, the leak post provides no proof files, operational disruption claims, or confirmation of actual exfiltration—only listing.The Orova group claims to have compromised JK Capital Management Limited. The leak post does not specify whether data was exfiltrated, encrypted, or both, nor does it detail what data categories are at stake.
What the group claims
JK Capital Management Limited is an asset management company set up in Hong Kong in 1997 and regulated by the Securities and Futures Commission of Hong Kong. We are GIPS and MIFID II compliant. Our mutual funds are all registered with CSSF, the Luxembourg regulator.
Sources
Source
Indexed 3 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

