Curtain Bluff
bd_56e753d43ab61e74 · schema v1 · pii pii-v1
Full breach record for Curtain Bluff →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Medusalocker on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
www.curtainbluff.com Curtain Bluff files Vacationer information (personal data), audit information (including past years), bank activity (statements with all transactions), internal organization documentation (even the menu) and other documents.There are also large amounts of account data (about 500 unique login/password pairs). Price – $120,000
Source provenance
- Source URL
- https://www.ransomware.live/id/Q3VydGFpbiBCbHVmZkBtZWR1c2Fsb2NrZXI=
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 25, 2025
- Raw hash
- e4f7108de7b9dc59be4d316c6b35f9c9bb07b1af7affe1dc3d2efd93429cdbf5
Reporting entity
- Name
- medusalocker
Victim entity
- Name
- Curtain Bluffnorm: curtain bluff
- Domain
- curtainbluff.com
- Industry
- Hospitalityllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· medusalocker
- Threat actor
- MedusalockerExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.