holidaypalace
Attack Intelligence
holidaypalace was compromised in a ransomware attack attributed to stormous in December 2025. The organization, operating in an undisclosed sector in Unknown, was added to the group's data leak site as part of an extortion campaign.
stormous operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
All of this data is offered for sale (user information: email, phone number, full name, date of birth / payment and booking data / ID cards and passports used in booking processes / full access was obtained to the system and all data was extracted).