Leak-site post naming DL HOLDINGS GROUP, captured by ThreatCluster

DL HOLDINGS GROUP

orova

Ransomware leak-site victim intelligence

Posted
Aug 19, 2026
Country
HK
Industry
Other

What was taken

Our team has taken: 1. Confidential financial records, including unaudited earnings reports, tax filings, and executive compensation details. 2. Internal communications (emails, database, etc.) revealing potential regulatory violations, undisclosed partnerships. 3. Customer and employee PII (Personally Identifiable Information), including passport scans, employment contracts, and NDA-protected agreements. 4. Board meeting minutes and strategic planning documents. 5. Cryptocurrency Investment Pla

Leak-site images (1)

Images from the victim's leak listing. Thumbnails scraped from the onion page are blurred by default — click a thumbnail to view.

ThreatCluster capture