RANSOMWARE VICTIMDUPLICATE CLAIM

Neinver

www.neinver.com
ransomhouse📍 Spain (ES)📅 February 16, 2026
8
same group

Attack Intelligence

Neinver was compromised in a ransomware attack attributed to ransomhouse in February 2026. The organization, operating in an undisclosed sector in Spain, was added to the group's data leak site as part of an extortion campaign.

ransomhouse operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

NEINVER is Europe’s second-largest outlet centre operator (ICSC 2012), managing 15 centres totaling 311,600 sqm of GLA under The Style Outlets and FACTORY brands. Recognized by leading international brands as the second most trusted outlet manager (Ecostra-Magdus 2013), the company oversees 500,000 sqm of retail space, 2,000 stores and more than 900 premium brands across Spain, Italy, France, Germany, Portugal and Poland. With 45 years of experience, NEINVER is a leading international property company specializing in development, asset management and fund management.

Additional Details

Other Victims — ransomhouse (8)

Quick Facts

CountrySpain (ES)
Attack DateFeb 16, 2026
Domainwww.neinver.com
Intel Sourceransomware.live
StatusDUPLICATE CLAIM

Threat Group

ransomhouse
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.