CVK Hotels & Resorts_Turkey
bd_1294513b66fc38ce · schema v1 · pii pii-v1
Full breach record for CVK Hotels & Resorts_Turkey →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group INC Ransom on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
We would like to draw your attention to the fact that even after being notified of the leak, the management of this organization treated it with complete indifference. If you are one of this organization's customers, rest assured that they couldn't care less about your personal data and who will use it and how. ---------------- CVK Hotels & Resorts offers luxury accommodations in the heart of Istanbul, providing guests with a blend of traditional Turkish hospitality and modern comfort. The company operates several hotels, including the CVK Park Bosphorus Hotel, CVK Park Bosphorus Residences, and CVK Taksim Hotel, catering to both leisure and business travelers. Their services include fine dining, spa and fitness facilities, and event spaces, ensuring a comprehensive experience for their clients. With a focus on creating memorable stays, CVK Hotels & Resorts also features a rewards program for guests to earn benefits during their visits.
Source provenance
- Source URL
- https://www.ransomware.live/id/Q1ZLIEhvdGVscyAmIFJlc29ydHNfVHVya2V5QGluY3JhbnNvbQ==
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 17, 2025
- Raw hash
- c43ad6cd07e02b6b5321efaa4087ee7e4a28a6ea7409dcbd58046e1e9c171429
Reporting entity
- Name
- incransomnorm: inc_ransom
Victim entity
- Name
- CVK Hotels & Resorts_Turkeynorm: cvk hotels resorts_turkey
- Domain
- cvkhotels.com
- Industry
- Hospitality
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· inc_ransom
- Threat actor
- Inc RansomExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.