GLOBALMalwareFinancial ServicesFinanceRansomwareCicada3301Ransom DemandedActor NamedMedium
CROWN MORTGAGE COMPANY
bd_5ccb6508d2667794 · schema v1 · pii pii-v1
Full breach record for CROWN MORTGAGE COMPANY →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Cicada3301 on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Group activity: Financial ServicesDiscovered: 2024-09-24
Source: Ransomware.live
Post text · scraped from the leak site
Crown Mortgage Company, located in Oak Lawn, IL, is a local Chicago mortgage lender serving Chicagoland in Northeast Illinois. Published data coming soon...
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_74d81f47091b06c3Indiana State AGfiled 2024-12-20(87d gap)Verified
Source provenance
- Source URL
- https://www.ransomware.live/
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 24, 2024
- Raw hash
- b496f1790a87abcd192f4796b8b264ddcc3eae157f1c28dfaee6f554e5fe91e5
Reporting entity
- Name
- cicada3301
Victim entity
- Name
- CROWN MORTGAGE COMPANYnorm: crown mortgage
- Domain
- crownmortgagecompany.com
- Industry
- Financial Servicesllm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· cicada3301
- Threat actor
- Cicada3301ExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.