The Norfolk Capital Group
bd_5f5831640633365c · schema v1 · pii pii-v1
Full breach record for The Norfolk Capital Group →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Black Basta on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
The Norfolk Capital Group was founded over 30 years ago, having previously been known as Central Trust, Norfolk Capital is the vehicle through which Andrew and Sharon Turner invest in a number of companies operating in the financial services sector, providing solutions to consumers and SMEs.Companies in the portfolio have been providing a broad range of loans and other financial products to their clients since 1988.The investments of Norfolk Capital are managed through a small team based in Norwich. That team also provides specialist support services to members of the Norfolk Capital Group on an on-going or ad hoc basis. Such services include the securing of wholesale funding.Investment opportunities are judged against a number of criteria designed to ensure that Norfolk Capital’s investments meet its risk appetite and result in a portfolio providing a spread of risk in areas of business in respect of which the management team has relevant knowledge and experience.SITE: https://www.norfolkcapital.co.uk Address Norfolk Capital Group25-27 Surrey StreetNorwich, NR1 3NXTel: 01603 896 896
Source provenance
- Source URL
- https://www.ransomware.live/
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 8, 2023
- Raw hash
- fe17e5fa9fbee34b5fc7b0a10e765cf72aa7bd1d8cc02d37bfdd6348707bebcc
Reporting entity
- Name
- blackbastanorm: black_basta
Victim entity
- Name
- The Norfolk Capital Groupnorm: the norfolk
- Domain
- norfolkcapital.co.uk
- Industry
- Financial Services
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· black_basta
- Threat actor
- Black BastaExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.