WHISKIJACKRESORTS.COM Listed by clop Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
WHISKIJACKRESORTS.COM was listed by the Clop ransomware group on January 25, 2026, after internal files were exfiltrated in a ransomware attack. An undisclosed number of people may be affected; check the company’s advisories and monitor accounts for signs of misuse.
What happened
The only confirmed public record is the January 25, 2026 listing by clop. The group asserts that files were exfiltrated during a ransomware intrusion. No information has been released about the date of the intrusion itself, the volume of data taken, or whether encryption was deployed against the company’s systems. The number of people whose information may be involved is listed as unknown.
The group behind it: clop
Clop is a ransomware operation that has conducted intrusions since at least 2019. It is known for a double-extortion approach in which data are copied before encryption and then threatened with disclosure if a ransom is not paid. The group maintains a leak site where it posts names of organizations it claims to have targeted. Its listings are presented by the group itself and are not independently verified in every case. Clop has previously claimed victims across finance, manufacturing, and professional-services sectors.
WHISKIJACKRESORTS.COM and its sector
WHISKIJACKRESORTS.COM operates hotel and resort properties in Whistler, Canada. The company provides condominium, townhouse, and boutique-hotel accommodations along with packages that include skiing, golf, mountain biking, and hiking. Organizations in the hospitality sector routinely collect and store guest names, contact details, booking records, and payment information, as well as internal operational documents such as staff records and vendor contracts.
The information in question
The listing refers only to “internal files exfiltrated in ransomware attack.” No inventory of specific file types or data categories has been published. While hospitality companies commonly hold personal and financial information belonging to guests and employees, the precise contents of the claimed exfiltration have not been disclosed. Any assessment of the data therefore remains unconfirmed beyond the general description provided by the listing.
Why it matters
Exposure of internal files can create operational and reputational consequences for the affected organization. For individuals, the risk depends on whether the files contain personal identifiers, contact information, or financial details. When such data appear in later disclosures, they can be used for targeted fraud or account takeover. Because the scale of the claimed incident is not yet known, the extent of any downstream impact cannot be quantified at present.
Were you affected?
Individuals who have stayed at properties operated by WHISKIJACKRESORTS.COM or who have provided personal information to the company can monitor official statements from the organization. A practical first step is to run a free exposure scan of the email address associated with any booking or account. Additional standard measures include reviewing bank and credit-card statements for unusual activity and enabling multi-factor authentication on any linked services.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
GRANITEPOINTE.CA Listed by clop Ransomware GroupISLANDOUTPOST.COM Listed by clop Ransomware GroupCLOUDDATAWORKS.CA Listed by clop Ransomware GroupSMTLAWYERS.CA Listed by clop Ransomware GroupLatest breaches
Read GalaxyWarden’s full analysis of the WHISKIJACKRESORTS.COM Listed by clop Ransomware Group →
Publicly posted by clop — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.