DisclosureLens
GLOBALMalwareGovernmentGovernmentRansomwareMeowRansom DemandedActor NamedMedium

Houston Housing Authority

bd_6c8377e34b865e35 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Filed

Oct 31, 2024

To disclose

Affected

Not disclosed

Linked

4 filings

Confidence

50%
Full breach record for Houston Housing Authority2 incidents on file

Threat-actor claim — not a regulatory filing

This row is a claim by the ransomware group Meow on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.

Group activity: Public SectorDiscovered: 2024-10-31

Source: Ransomware.live

Post text · scraped from the leak site

<p>Dear customers!<\/p><p>We are excited to offer you exclusive access to over 38 GB of confidential data from the Houston Housing Authority HHA, an agency dedicated to providing affordable housing options and support services for low income residents in Houston. Serving over 60,000 individuals, HHA operates various programs, including the Housing Choice Voucher Program formerly Section 8 and public housing initiatives, offering rental assistance to families, seniors, and persons with disabilities to help them secure private housing in the community.<\/p><p>HHA manages public housing properties and collaborates with community partners to deliver additional services like education, job training, and family self sufficiency programs, aiming to enhance residents economic opportunities. The organization operates under federal guidelines from the U.S. Department of Housing and Urban Development HUD and adheres to fair housing regulations to ensure equitable access.<\/p><p>This comprehensive data pack includes:<\/p><p>Employee data personal details, Social Security cards, ID scans<br>Client information contact details, rental assistance records<br>Contracts and agreements confidentiality agreements, service contracts<br>Financial documents real estate purchase records, invoices, debt obligations<br>Liability insurance certificates and tax forms<br>Personal data dates of birth, Social Security numbers, ID scans<br>And much more<br>These records offer valuable insights into the Houston Housing Authoritys operations, providing essential information for professionals in the housing sector, public administration, and business analysis.<\/p><p>To gain access to this exclusive 38 GB data pack, simply click the Buy button and provide your contact details for registration. Our team will assist you in ensuring a secure and confidential transaction.<\/p><p>Dont miss this opportunity t

Incident timeline — mostly unverified

? — ?

Breach window unknown

Oct 31, 2024

Claim posted

Corroborated · see linked filings

Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.

Claim → filing

Compliance clock

Not assessable

This filing is one of 4 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 3 states

View merged incident ↗
Leak SiteOct 31 · first · this page

Pattern: first filing Oct 31, last Mar 27 (MA) — a 146-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claimThis record

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filing

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.

Source ceiling

  • actor name
  • victim claim
  • ransom/leak status
  • discovery date
  • materiality
  • notification
  • affected count
  • confirmed data types
  • compliance clock

The ✕ fields stay blank until a regulatory filing or victim disclosure lands.

About this groupFirst seen 2023-09-04

meow

According to ransomware.live, Meow emerged in 2022 (resurfacing aggressively in 2024), initially operating as a RaaS using the Conti v2 codebase before transitioning to a data-extortion-only model — selling stolen data rather than encrypting files — with a heavy focus on US healthcare and medical research organizations.

145 victims claimed globally145 tracked hereFull profile →