The Stormous threat actor has claimed to have compromised nirvanahotels.com.tr, exposing sensitive data including full names of hotel guests, email addresses, customer complaints and feedback, booking or reference numbers, and internal hotel communication data. This incident has impacted Turkey #TR.
Incident Details
- Victim: nirvanahotels.com.tr
- Country: TR
- Actor: stormous
- Source: http://6sf5xa7eso3e3vk46i5tpcqhnlayczztj7zjktzaztlotyy75zs6j7qd.onion/nirvanahotels.com.tr
- Discovered: 2025-05-21 11:49:39.254312
- Published: 2025-05-21 11:48:36.385626
Information
- Compromised hotel guest personal information, including full names and email addresses (both internal and external)
- Leak of customer complaints and feedback content
- Exposure of booking or reference numbers
- Unauthorized access to internal hotel communication data

Disclaimer: This post is based on public claims made by the ransomware group "stormous". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.