A new ransomware incident has been published on the ransomware.live leak site, involving a claim by the group "krybit" against the French entity SARL CANIS EVENTS SÉCURITÉ PRIVÉE. This event is…
Ransomware: nova claims Nordfjord Hotell (NO) — Hospitality and Tourism
BREACH. Sourced from ransomwarelive, summarised by Matproof.
AI Analysis
What changed and what to do.
On 19 May 2026, a ransomware incident involving the group "nova" was reported against Nordfjord Hotell in Norway, a hospitality sector entity. The breach was published on the ransomware.live platform under the BREACH framework, indicating that sensitive data may have been exfiltrated and potentially leaked. This event highlights an ongoing threat to the hospitality and tourism sector, which often holds personal and payment data of guests.
Organizations in the hospitality and tourism sector across the EU, particularly hotels and related service providers, are directly affected. This includes any entity that processes customer data, such as booking information, payment card details, or passport numbers. The incident serves as a reminder that smaller or regional operators are increasingly targeted, and compliance teams must assess whether their own systems are similarly vulnerable.
Compliance teams should immediately verify that their incident response plans are current and include ransomware-specific procedures. They should review data backup integrity and ensure offline backups are tested. Additionally, teams should confirm that data breach notification obligations under GDPR are clearly mapped, including timelines for notifying supervisory authorities and affected individuals. Finally, a risk assessment of third-party vendors and payment processing systems should be conducted to identify potential entry points for similar attacks.
This summary is AI-generated for orientation purposes. For regulatory action, always consult the original source linked above.
More BREACH updates
Latest in BREACH.
A new ransomware incident has been publicly reported on the ransomware monitoring platform ransomware.live, claiming that the threat actor group "krybit" has targeted the Hong Kong-based domain…
On 19 May 2026, a ransomware group known as Rhysida publicly claimed responsibility for a cyberattack against the Landeshauptstadt Stuttgart, a major German municipal government entity. This incident…
A new ransomware incident has been publicly claimed on the ransomware.live leak site, involving Tang Seng Nitrogen & Pump Systems Pte. Ltd., a Singapore-based manufacturing firm. The breach was…
Map this to your controls
Connect regulatory changes to your compliance work.
Matproof maps every regulator update directly to your controls and surfaces the ones that affect your organisation — across 21 frameworks.