Group:
Thegentlemen
Discovered by ransomware.live: 2026-04-04
Estimated attack date:
2026-04-04
Country:
Description:
A leading real estate investment and property management company specializing in multifamily and commercial assets. The data includes a breach involving 111,000 Social Security numbers from the company jrk.com.
Responsibility for the publication will lie with both the company itself and the insurance providers servicing it - mash.com (the intermediary) and the primary insurer beazley.com - which fails to properly value its clients’ data and is deliberately ignoring communications in an attempt to avoid payment, thereby putting the company at risk.
DNS Records:
The following DNS records were found for the victim's domain.
- jrk-com.mail.protection.outlook.com.
- 5e016bd27lnjbsmurf9rmck9ni
- 84ahvbt7bon0j86ibddl625r04
- google-site-verification=ZpOpV0-rfEO1tAyHQaBBYS3GAQJcKUbQgH90nOpDuSI
- 9p394lv7qlnj9ud8cq1blgq4r2
- p1h8t1igja2cd7e1ve7le2bhdi
- google-site-verification=IP27jU-WJZ0JGKbQ9lwvTtmVah2TyBYtC-4wTnt7QFA
- v=spf1 ip4:40.112.253.17 ip4:64.60.29.50 ip4:64.60.29.59 ip4:205.220.174.239 ip4:205.220.162.240 include:_spf.realpage.com include:spf.protection.outlook.com include:jrk-com.spf.smtp25.com include:spf.nexuspayables.com include:asp-spf1.yardi.com include:a" "sp-spf2.yardi.com ~all
- google-site-verification=k4gDWmIACNLHQ11GCF0hRDJcNLPtZFLcqt9u9oXRbYs
- 3gnhsmfp6bb1k61e2od2t37te2
- google-site-verification=h_PA-6FAepbZHfeBlw0BKxIP1DiuVaiXBCnmuiFFd4w
- google-site-verification=Q5nW1kMVe0R4GJ2o79Mn_pusyPODkZhIQcO1FIJSyL0
- uuh07gcg08knhc663d6pmhsg9
- ml36emrkc3risdse1vfaot2be0
- google-site-verification=4k_0YV5f3o-LMrgZUiMPDTMsVxoFWyNvLduFITAN1Yk
- cE03Ggvygvio9jBK1pHZKw==
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.