Ransomware victim disclosure
← All victimsEl Kair
listed as ELKAIR.COM · Claimed by Clop · listed 5 months ago
Status timeline
- ListedJan 25, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileELKAIR.COM appears to be an Egyptian travel or air services company, likely operating in the airline ticketing, charter, or travel agency sector based on the domain name and country association. Limited public information is available to confirm the full scope of operations or scale. The company is based in Egypt.
- Industry
- Travel & Tourism / Air Travel Services
Attack summary
Severity: medium — Data is marked as published by Clop, a prolific exfiltration-focused group, suggesting confirmed exfiltration; however, no proof files, data inventory, or data volume are available to assess scale or sensitivity, limiting severity to medium.The Clop ransomware group has listed ELKAIR.COM as a victim with a disclosed status of 'data_published', indicating data has been exfiltrated and published. The leak post content is non-substantive (a redirect placeholder), and no specific data types or volume are described.
Original description
AI-summarised, not from the leak postN/A
The leak post
captured from the group's siteYou have been placed in a queue, awaiting forwarding to the platform. Please do not refresh the page, you will be automatically redirected.
Sources
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

