On 20 June 2026, a ransomware group known as thegentlemen publicly claimed responsibility for a cyberattack against Al Khaja Holding, a business services firm based in the United Arab Emirates. The…
Ransomware: payload claims Preferred Properties — Not Found
BREACH. Sourced from ransomwarelive, summarised by Matproof.
AI Analysis
What changed and what to do.
A new ransomware threat has been identified under the BREACH framework, published by ransomwarelive on 20 June 2026. The incident, titled "Ransomware: payload claims Preferred Properties — Not Found," indicates that attackers are now claiming to have exfiltrated data from a target named "Preferred Properties," but the actual payload or stolen data has not been located or verified. This suggests either a false claim designed to pressure victims into paying, or a sophisticated attack where the exfiltration remains undetected. The publication serves as a warning that ransomware groups are increasingly using unverified data theft claims to extort payments.
Organizations in the real estate and property management sectors are most directly affected, particularly those with "Preferred Properties" in their name or similar branding. However, any EU-based company handling sensitive client or financial data should consider this a relevant threat, as the tactic of unverified data claims is likely to spread across industries. Small and medium-sized enterprises with limited cybersecurity resources are especially vulnerable to such psychological pressure tactics.
Compliance teams should immediately verify whether their organization or any third-party vendors match the "Preferred Properties" description and check for any unusual data access logs. They should update incident response plans to include procedures for handling unverified ransomware claims, and ensure that data backup and recovery protocols are tested. Additionally, teams should report any suspicious activity to their national cybersecurity authority and review cyber insurance policies for coverage of extortion demands based on unsubstantiated data theft claims.
This summary is AI-generated for orientation purposes. For regulatory action, always consult the original source linked above.
More BREACH updates
Latest in BREACH.
On June 21, 2026, a ransomware group known as Nova claimed responsibility for an attack on Nhà Thành Phố, a Vietnamese entity, with the breach notification published on the ransomware.live site under…
On June 20, 2026, the ransomware group Qilin publicly claimed responsibility for a cyberattack against Pacific Lamp & Supply, a U.S.-based manufacturing company. This incident was published on the…
On June 20, 2026, a ransomware group published a claim on the ransomware.live extortion site, alleging a data breach at ENB Versicherungen, a Swiss insurance entity operating under the myenb.ch…
Map this to your controls
Connect regulatory changes to your compliance work.
Matproof maps every regulator update directly to your controls and surfaces the ones that affect your organisation — across 21 frameworks.