Ransomware victim disclosure
← All victimsSangre de Cristo Arts and Conference Center
Claimed by Nightspire · listed 5 hours ago
Status timeline
- ListedOct 9, 2026
- Data leakeddate unknown
At a glance
- Group
- Nightspire
- Status
- Data leaked
- Country
- United States
- Sector
- Hospitality
- Listed on leak site
- Oct 9, 2026
About the victim
AI dossier — public-source company profileSangre de Cristo Arts and Conference Center is a nonprofit cultural organization in Pueblo, Colorado, operating a multidisciplinary arts facility with galleries, a children's museum (the Buell), performing arts theaters, and event spaces. It hosts exhibitions, live performances, educational programs, and community events serving southern Colorado.
- Industry
- Arts & Culture — Nonprofit Museum & Performance Venue
- Address
- 210 N. Santa Fe Ave. Pueblo, CO 81003
Attack summary
Severity: low — The disclosure is a bare listing with no proof files, no data sample, no operational disruption stated, and no specifics about what was accessed or exfiltrated. A nonprofit cultural venue typically holds modest volumes of personal or financial data; without evidence of actual compromise or data publication, this remains an unsubstantiated claim.The nightspire group claims to have conducted an attack on Sangre de Cristo Arts and Conference Center. The leak post provides no specific details of what data was exfiltrated, encrypted, or accessed, nor does it enumerate any files or proof of intrusion.
Original description
AI-summarised, not from the leak postSangre de Cristo Arts and Conference Center is a nonprofit cultural organization located in Pueblo, Colorado, United States. It operates as a multidisciplinary arts facility featuring art galleries, a children's museum, performing arts theaters, and conference and event spaces. The center hosts exhibitions, live performances, educational programs, and community events, serving the arts, culture, and entertainment industry in the southern Colorado region.
Sources
- Victim sitesdc-arts.org
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

