hallidays.co.uk
bd_a63b3ad76b154c2e · schema v1 · pii pii-v1
Full breach record for hallidays.co.uk →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Black Basta on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Hallidays we’re much more than accountants, we’re business partners to our clients. We support them and help them to grow in a wide range of ways. If you’re an ambitious business that wants to grow, we’re the team you want in your corner.SITE: www.hallidays.co.uk Address Riverside House, Business Park Kings Reach, Yew St Stockport SK4 2HD United Kingdom 0161 476 8276FULL DATA SIZE: 572gb 1. Accounting 2. HR 3. ConfidentialityNETWORK: HALLIDAYSCNS-------------------------DOMAIN ADMINS------------------------- Administrator ChristianW haladfsuser Lyndsey SCVMMAdmin ServerAdmin TMPAdminhallidayscns\administrator mYSTICtEA-------------------------DC------------------------- HALDC04.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.221 Windows Server 2016 Standard HVM-DC01.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.67 Windows Server 2019 Standard-------------------------SERVERS------------------------- HVM-S2DCluster.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.51 Windows Server 2019 Datacenter HVMS2DREPLICA.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.119 Windows Server 2019 Datacenter HVM-S2DSRV02.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.54 Windows Server 2019 Datacenter HVM-FILE04.HALLIDAYSCNS.HALLIDAYS.CO.UK Windows Server 2019 Datacenter HVM-FILE05.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.92 Windows Server 2019 Datacenter HVM-ADFS01.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.93 Windows Server 2019 Datacenter SOFS01.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.58 Windows Server 2019 Datacenter HVM-RD01.HALLIDAYSCNS.HALLIDAYS.CO.UK Windows Server 2019 Datacenter HVM-VEEAM01.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.88 Windows Server 2019 Datacenter HVM-S2DSRV01.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.52 Windows Server 2019 Datacenter HVM-S2DSRV04.HALLIDAYSCNS.HALLIDAYS.CO.UK 192.168.0.58 Windows Server 2019 Datacenter HVM-VAR01.HALLIDAYSCNS.HALLIDAYS.CO.UK Windows Server 2019 Datacenter HVM-S2DSRV03.HALLIDAYSCNS.H
Source provenance
- Source URL
- https://www.ransomware.live/
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 6, 2023
- Raw hash
- c5b17c56e064a49264bcb5208614e030b179687e951a7f3bf60911c7d16bd10d
Reporting entity
- Name
- blackbastanorm: black_basta
Victim entity
- Name
- hallidays.co.uknorm: hallidayscouk
- Domain
- hallidays.co.uk
- Industry
- Professional Services
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· black_basta
- Threat actor
- Black BastaExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.