Ransomware victim disclosure
← All victimsSea Island Shrimp House
listed as www.shrimphouse.com · Claimed by Incransom · listed 5 months ago
Status timeline
- ListedJan 26, 2026
- Data leakeddate unknown
At a glance
- Group
- Incransom
- Status
- Data leaked
- Country
- United States
- Sector
- Hospitality and Tourism
- Listed on leak site
- Jan 26, 2026
- Data size
- 1 TB
About the victim
AI dossier — public-source company profileSea Island Shrimp House is a family-owned seafood restaurant chain founded in 1965, operating seven locations across San Antonio and New Braunfels, Texas. The company is known for affordable, high-quality seafood including fried and grilled fish, shrimp dishes, oysters, and ceviche. It also operates a loyalty rewards program (SeaFoodie Club) and offers online ordering, curbside pickup, and delivery.
- Industry
- Casual Dining Seafood Restaurants
- Address
- San Antonio & New Braunfels, Texas, United States
- Founded
- 1965
Attack summary
Severity: high — 1 TB of data is claimed exfiltrated and published (disclosed status: data_published), which likely includes customer PII (loyalty program members, online ordering records), employee data, and business financials for a multi-location restaurant operation. The scale and published status elevate this beyond medium.The Incransom group claims to have exfiltrated approximately 1 TB of data from Sea Island Shrimp House and has published the data. No specific data categories or encryption claims are detailed in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Unspecified company data (1 TB)
What the group claims
1tb data
Sources
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

