On June 28, 2023, the karakurt ransomware group listed Pan Pacific Hotels Group on its leak site, claiming that internal files had been exfiltrated during a ransomware attack. The hospitality company, a wholly-owned subsidiary of Singapore-listed UOL Group Limited, saw corporate and personal documents exposed, including contracts along with SSNs, passports, and drivers licenses. The listing indicated that more than 40 GB of data would be released if demands were not met. Anyone who has stayed at or worked with Pan Pacific properties, particularly Pan Pacific Melbourne, may have information now in the hands of extortionists.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
Reported Details from the Listing
The karakurt leak site states that Pan Pacific Hotels Group suffered a ransomware incident resulting in the theft of internal files. The disclosure does not quantify the exact number of affected individuals, nor does it list every data type beyond referencing contracts and identifiable documents such as social security numbers, passports, and drivers licenses. The primary source makes clear that 40+ GB of data are coming, a volume that suggests a significant cache of both operational records and personal information was taken. No ransom amount is publicly detailed on the listing itself.
Why This Matters for You and Your Family
When a hotel group loses control of guest contracts, employee records, or vendor agreements containing SSNs, passports, and drivers licenses, the risk extends far beyond the company. If you have ever provided identification details during a booking, corporate event, or employment process at a Pan Pacific property, those records could now be used to open accounts, file fraudulent tax returns, or impersonate you. Your family members listed on the same reservations or shared addresses face the same exposure. The breach turns what once felt like routine hospitality paperwork into long-term identity fuel.
The Doxxing and Identity-Chain Implications
Stolen passports and drivers licenses are high-value items on underground markets because they link real names, dates of birth, and document numbers to email addresses or phone numbers found in the same files. Attackers can chain these credentials across travel databases, loyalty programs, and financial services. A single exposed contract can reveal not only your identity but also travel patterns, family member names, and payment details. This creates persistent doxxing pathways that can surface in harassment campaigns or targeted fraud years later. Credential leaks of this nature also cascade into account takeovers on gaming platforms, where children’s usernames and reused passwords become easy follow-on targets.