The ransomware attack targeted crystalhotels.com.tr, revealing sensitive data including full names of hotel guests, email addresses, customer complaints, booking references, and internal communication data. The threat actor, Stormous, compromised the hotelβs systems, impacting operations and data security in Turkey. #TR
Incident Details
- Victim: crystalhotels.com.tr
- Country: TR
- Actor: stormous
- Source: http://6sf5xa7eso3e3vk46i5tpcqhnlayczztj7zjktzaztlotyy75zs6j7qd.onion/crystalhotels.com.tr
- Discovered: 2025-05-21 11:51:05.229078
- Published: 2025-05-21 11:50:01.366856
Information
- Exposure of hotel guest full names.
- Leakage of email addresses, including both internal and external contacts.
- Publication of customer complaints and feedback content.
- Disclosure of booking or reference numbers.
- Compromise of internal hotel communication data.

Disclaimer: This post is based on public claims made by the ransomware group "stormous". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.