LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

Recent Breaches › WHISKIJACKRESORTS.COM Listed by clop Ransomware Group

HIGH severityUnverified claimHow we verify

WHISKIJACKRESORTS.COM Listed by clop Ransomware Group: Ransomware Claim — What’s Alleged & What To Do

RBRecent Breaches Breach Intelligence·January 25, 2026
WHISKIJACKRESORTS.COM Listed by clop Ransomware Group

Reported January 25, 2026.

HIGH
Severity
January 25, 2026
Disclosed
ShareXLinkedInFacebookRedditWhatsAppTelegram

WHISKIJACKRESORTS.COM was listed by the Clop ransomware group on January 25, 2026, after internal files were exfiltrated in a ransomware attack. An undisclosed number of people may be affected; check the company’s advisories and monitor accounts for signs of misuse.

Severity & verification
HIGH severityUnverified claim
Data types not itemised.
Published on a ransomware group’s leak site — an unverified extortion claim until the named organization or credible reporting corroborates it.
Check your exposure
See every leak and listing tied to your email. We can’t confirm any single incident against the sources we search, so we won’t pretend to. 15-second check, no card, no account. Details go to your inbox.

By running your scan you agree to the Terms and Conditions and the Privacy Policy, and to GalaxyWarden emailing you the results of this scan.

On January 25, 2026, the ransomware group clop listed WHISKIJACKRESORTS.COM on its leak site and stated that internal files had been taken from the Canadian resort operator. No figure for the number of individuals affected has been released, and the company has not issued a public statement confirming or denying the claims. The listing places the incident among the many ransomware operations that continue to target private-sector organizations in 2026. Such listings typically signal that data were removed before encryption occurred, though independent verification of the claims remains limited at this stage.

What happened

The only confirmed public record is the January 25, 2026 listing by clop. The group asserts that files were exfiltrated during a ransomware intrusion. No information has been released about the date of the intrusion itself, the volume of data taken, or whether encryption was deployed against the company’s systems. The number of people whose information may be involved is listed as unknown.

The group behind it: clop

Clop is a ransomware operation that has conducted intrusions since at least 2019. It is known for a double-extortion approach in which data are copied before encryption and then threatened with disclosure if a ransom is not paid. The group maintains a leak site where it posts names of organizations it claims to have targeted. Its listings are presented by the group itself and are not independently verified in every case. Clop has previously claimed victims across finance, manufacturing, and professional-services sectors.

WHISKIJACKRESORTS.COM and its sector

WHISKIJACKRESORTS.COM operates hotel and resort properties in Whistler, Canada. The company provides condominium, townhouse, and boutique-hotel accommodations along with packages that include skiing, golf, mountain biking, and hiking. Organizations in the hospitality sector routinely collect and store guest names, contact details, booking records, and payment information, as well as internal operational documents such as staff records and vendor contracts.

The information in question

The listing refers only to “internal files exfiltrated in ransomware attack.” No inventory of specific file types or data categories has been published. While hospitality companies commonly hold personal and financial information belonging to guests and employees, the precise contents of the claimed exfiltration have not been disclosed. Any assessment of the data therefore remains unconfirmed beyond the general description provided by the listing.

Why it matters

Exposure of internal files can create operational and reputational consequences for the affected organization. For individuals, the risk depends on whether the files contain personal identifiers, contact information, or financial details. When such data appear in later disclosures, they can be used for targeted fraud or account takeover. Because the scale of the claimed incident is not yet known, the extent of any downstream impact cannot be quantified at present.

Were you affected?

Individuals who have stayed at properties operated by WHISKIJACKRESORTS.COM or who have provided personal information to the company can monitor official statements from the organization. A practical first step is to run a free exposure scan of the email address associated with any booking or account. Additional standard measures include reviewing bank and credit-card statements for unusual activity and enabling multi-factor authentication on any linked services.

AICompiled with AI assistance from public sources and published under our editorial standards.

Editorial & sourcing policy
Recent Breaches is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data, and we do not hold the data claimed in leak-site listings. Incidents are compiled from publicly accessible sources and threat-intelligence platforms and are reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — write to support@galaxywarden.com or press@recentbreaches.com.
Check if you’re exposed →

How this breach connects

Company

Attributed to

Method

CompanyWHISKIJACKRESORTS.COM security record
84/100
DoxxScan™ · Low doxx risk
B- 76Above-average record

1 reported incident on record.

See WHISKIJACKRESORTS.COM’s full breach history →

More recent breaches

GRANITEPOINTE.CA Listed by clop Ransomware GroupFebruary 7, 2026ISLANDOUTPOST.COM Listed by clop Ransomware GroupFebruary 7, 2026CLOUDDATAWORKS.CA Listed by clop Ransomware GroupFebruary 7, 2026SMTLAWYERS.CA Listed by clop Ransomware GroupFebruary 7, 2026

Latest breaches

Read GalaxyWarden’s full analysis of the WHISKIJACKRESORTS.COM Listed by clop Ransomware Group →

Source: threat-actor leak-site listing

Publicly posted by clop — unverified claim, pending independent verification

Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.

Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.

ShareXLinkedInFacebookRedditWhatsAppTelegram