HackerFeeds
All ransomware incidents
S

Ransomware group incransom hits SECOND HOUSE

MEDIUM
·Hospitality·ES·2026-09-21

SECOND HOUSE — a hospitality target operating in ES has been listed by the incransom ransomware group on 2026-09-21. The information below reflects what the threat actor has publicly claimed on their leak site; the details have not been independently verified.

Incident Report

Target OrganizationSECOND HOUSE
Threat Group
incransom
SummarySecond House (Second House, S.L.) is a privately held real estate company headquartered in Barcelona, Spain, with over 26 years of experience in the property sector. Their business model centers on buying properties and adding value to them — through renovation works, improving rental situations, and legalizing the existing state of buildings — effectively driving renewal of the real estate market in Barcelona and its surroundings. They are actively acquiring in the Barcelona area (including L'Hospitalet, Badalona, Sant Cugat, etc.)
Date of Breach2026-09-21
Discovery Date2026-09-21
RegionES
Target Domain
Business SectorHospitality
Severity
MEDIUM

Claim by incransom

Second House (Second House, S.L.) is a privately held real estate company headquartered in Barcelona, Spain, with over 26 years of experience in the property sector. Their business model centers on buying properties and adding value to them — through renovation works, improving rental situations, and legalizing the existing state of buildings — effectively driving renewal of the real estate market in Barcelona and its surroundings. They are actively acquiring in the Barcelona area (including L'Hospitalet, Badalona, Sant Cugat, etc.)

Posted by the incransom threat actor on its public leak site. This is the group's own statement and has not been independently verified by HackerFeeds.

Sources

Leak post (onion / Tor)

tor

http://incblog6qu4y4mm4zvw5nrmue6qbwtgjsxpw6b7ixzssu36tsajldoad.onion/blog/disclosures/6ab02fa89cd108bf26c5e025

Open this URL in Tor Browser. Browsing leak sites carries real risk — view passively, never click further.

Disclaimer

HackerFeeds does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.