TUI China
bd_7c6de67ada097337 · schema v1 · pii pii-v1
Full breach record for TUI China →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group DragonForce on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
An affiliate of TUI Group, the world's number one leisure tourism business, TUI China was established in late 2003 as the first joint venture with foreign majority share in the Chinese tourism industry. Passports, visas, internal documentation, legal and financial documents, etc.
Source provenance
- Source URL
- https://www.ransomware.live/id/VFVJIENoaW5hQGRyYWdvbmZvcmNl
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 3, 2026
- Raw hash
- c4f9a4d2c423c8468e5da1d50d1b5ec3d59bef6e9f677e57ea7722ea531d4e94
Reporting entity
- Name
- dragonforce
Victim entity
- Name
- TUI Chinanorm: tui china
- Domain
- tui.cn
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· dragonforce
- Threat actor
- DragonforceExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.