Ransomware victim disclosure
← All victimsKatathani Phuket Beach Resort
Claimed by Dragonforce · listed 3 days ago
Status timeline
- ListedJul 27, 2026
- Data leakeddate unknown
At a glance
- Group
- Dragonforce
- Status
- Data leaked
- Country
- Thailand
- Sector
- Hospitality
- Listed on leak site
- Jul 27, 2026
About the victim
AI dossier — public-source company profileKatathani Phuket Beach Resort is a deluxe beachfront luxury resort located on an 850-meter stretch of Kata Noi Beach in Phuket, Thailand. It features multiple accommodation wings (Vhari, Bhuri, Thani), world-class amenities including spa, fitness facilities, multiple restaurants, and recreational activities, catering to couples, families, and solo travelers.
- Industry
- Hospitality – Luxury Beachfront Resort
- Address
- Kata Noi Beach, Phuket, Thailand
Attack summary
Severity: low — The leak post contains only a generic promotional description of the resort with no evidence of actual data exfiltration, proof files, screenshots, or operational disruption. No specific data compromise is described.The dragonforce group claims to have attacked Katathani Phuket Beach Resort. The leak post provides no specific details about what data was exfiltrated, encrypted, or compromised, nor does it state what sensitive information is at risk.
What the group claims
Katathani Phuket Beach Resort is a luxury beachfront resort located on Kata Noi Beach in Phuket, Thailand, offering a range of accommodations from suites to family-friendly rooms. The resort features world-class amenities including multiple dining options, a spa, fitness facilities, and a kids club, catering to couples, families, and solo travelers alike. Guests can enjoy stunning ocean views, direct beach access, and a variety of recreational activities, ensuring a memorable stay in a tranquil setting. With its commitment to providing exceptional service and a serene atmosphere, Katathani is an ideal destination for those seeking relaxation and luxury in paradise.
Sources
Source
Indexed 3 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

