Ransomware victim disclosure
← All victimsTravel of America
Claimed by Dragonforce · listed 2 months ago
Status timeline
- ListedApr 13, 2026
- Data leakeddate unknown
At a glance
- Group
- Dragonforce
- Status
- Data leaked
- Country
- United States
- Sector
- Hospitality and Tourism
- Listed on leak site
- Apr 13, 2026
About the victim
AI dossier — public-source company profileTravel of America is a US-based luxury travel agency specializing in ocean, river, and expedition cruises, as well as hotels, resorts, guided tours, safaris, and custom land arrangements. The agency works with major cruise lines such as Viking, Holland America, Regent Seven Seas, and Royal Caribbean, and is affiliated with Signature Travel Network, IATAN, CLIA, and ASTA. It serves both individual and group travelers and can be reached at 1-800-228-8843.
- Industry
- Luxury Travel Agency & Cruise Booking
Attack summary
Severity: medium — Data is marked as published by the group, confirming some level of exfiltration and release. However, no specific data categories, volume, or proof files are described in the leak post for this victim, and there is no indication of regulated data (e.g., medical or government records) at scale, limiting severity to medium.DragonForce claims to have published data belonging to Travel of America, with the disclosure status listed as data_published, indicating exfiltration and release of company data. No specific data size or ransom amount was stated in the post.
What the group claims
Travel of America specializes in luxury ocean, river, and expedition cruises, as well as hotels, resorts, guided tours, and custom land arrangements for both individual and group travel. They offer a wide range of travel options including hosted cruises, shore excursions, and active adventures. Their services cater to clients seeking high-end travel experiences and personalized itineraries. With a focus on exceptional customer service, they provide exclusive offers and loyalty programs to enhance the travel experience.
The leak post
captured from the group's site```
{"data":{"count":483,"publications":[{"uuid":"b008b8b7-0e47-416f-adcd-2313d8136de4","created_at":"2026-05-08T20:56:13.122134Z","name":"CF Evans Construction","website":"www.cfevans.com","address":"125 Regional Pkwy Ste 200, Orangeburg, South Carolina, 29118, United States","description":"A recognized leader in the multi-family housing construction industry, CF Evans Construction provides a product for developers. The company has thrived amid six decades.\nThe data of this company includes:\n Corporate correspondence of senior executives\n Financial documents\n HR documents\n Accounting documents\n Certificates, contracts, passwords, databases, and much more.","weight":4775795351552,"is_timer_publication_stopped":false,"timer_publication":"2026-05-22T07:48:00Z","try_again":false,"tags":[],"logo_uuid":"f4e582dd-6562-4590-bac8-2b9e5c564853","is_transfering":false},{"uuid":"3827192f-9bb3-490c-9c1c-d28b382510cd","created_at":"2026-05-08T17:53:24.736605Z","name":"CMC Expertise Comptable","website":"cmcexpertise.fr","address":"32 Rue De La Clairière, Fort-de-France,","description":"CMC Expertise Comptable is a certified accounting firm located in Martinique, dedicated t…Sources
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

