Ransomware victim disclosure
← All victimsSc Regional Housing Authority
Claimed by Orova · listed 2 hours ago
Status timeline
- ListedAug 4, 2026
- Data leakeddate unknown
At a glance
- Group
- Orova
- Status
- Data leaked
- Country
- United States
- Sector
- Government & Defense
- Listed on leak site
- Aug 4, 2026
About the victim
AI dossier — public-source company profileSC Regional Housing Authority (SCRHA) is a South Carolina public housing agency providing affordable housing solutions, including public housing, homeownership assistance, and Section 8 rental assistance programs to low-income families. The organization has over 15 years of operational history.
- Industry
- Public Housing & Social Services
Attack summary
Severity: medium — Public housing authority holds PII and financial data on low-income beneficiaries. Disclosed status is 'data_published' but no proof files, screenshots, or sample data are described in the post. No ransom demand or operational disruption stated. Sensitivity of housing/welfare data elevates from low to medium despite absence of proof evidence.Orova claims to have compromised SC Regional Housing Authority. The group post describes the organization's services but provides no explicit statement of what data was exfiltrated or encryption deployed, nor does it detail specific proof of access.
Data the group says was taken
AI dossier — extracted from the leak post- Tenant records
- Financial assistance applications
- Section 8 program data
- Personal identification information
What the group claims
SCRHA3 provides affordable housing solutions across South Carolina, focusing on public housing, homeownership, and rental assistance programs. With over 15 years of experience, they offer subsidized housing assistance to qualified families and help low-income families access the private rental market through the Section 8 program.
Sources
Source
Indexed 2 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

