KillSec claims data theft from Australian home builder Vogue Homes
- Organization
- Vogue Homes
- Exploit
- Ransomware
- Industry
- Construction
KillSec, a ransomware and extortion group active since at least late 2023, listed the Australian residential builder Vogue Homes on its darknet leak site in late November 2024, claiming to have stolen a substantial volume of company and customer data.
Vogue Homes operates from Prestons in south western Sydney and builds detached homes and duplexes. The listing appeared on 23 November 2024 according to the leak site tracking service Ransomware.live, and was reported by Cyber Daily two days later.
In its post the group said the stolen material included personally identifiable information such as full names, contact numbers, email addresses and postal addresses, along with financial information including price locks and contractual agreements, plus customer records, design specifications and job documentation. To support the claim KillSec published sample scans, among them a signed contractual agreement, a non disparagement contract and a detailed ground floor plan from one of the builder's house designs.
The group did not name a ransom figure or set a public deadline, though it has previously offered stolen data sets for around 25,000 euros. KillSec announced a move to a ransomware as a service model in June 2024, and Cyber Daily reported that it had claimed 93 victims across a range of industries in total since it was first observed in October 2023. Vogue Homes did not respond to requests for comment and had made no public statement as of late November 2024, and the scope of any breach was not independently verified.