Ransomware group Storm hits United Group of Companies
United Group of Companies — a other target operating in US has been listed by the Storm ransomware group on 2026-08-07. The information below reflects what the threat actor has publicly claimed on their leak site; the details have not been independently verified.
Incident Report
| Target Organization | United Group of Companies |
|---|---|
| Threat Group | Storm |
| Summary | Since 1972, The United Group of Companies, Inc. has specialized in all phases of real estate: development, financing, construction, and management. Their specialties include independent senior living, student apartment communities, multi-family (including affordable) housing, commercial properties, and mixed-use neighborhoods. The United Group of Companies is headquartered out of Troy, New York. The company headquarters is located in 300 Jordan Road, Troy, NY 12180, United States. 201-500 Employees |
| Date of Breach | 2026-08-07 |
| Discovery Date | 2026-08-08 |
| Region | US |
| Target Domain | ugoc.com |
| Business Sector | Other |
| Severity | MEDIUM |
Claim by Storm
Since 1972, The United Group of Companies, Inc. has specialized in all phases of real estate: development, financing, construction, and management. Their specialties include independent senior living, student apartment communities, multi-family (including affordable) housing, commercial properties, and mixed-use neighborhoods. The United Group of Companies is headquartered out of Troy, New York. The company headquarters is located in 300 Jordan Road, Troy, NY 12180, United States. 201-500 Employees
Posted by the Storm threat actor on its public leak site. This is the group's own statement and has not been independently verified by HackerFeeds.
Sources
Victim website
ugoc.com
Leak post (onion / Tor)
http://yqhecvqtdvq6p7duqcgw2qca77spbgakxcoibtx6zpvfshltsbbbhfqd.onion/company/6a7641d97a5bd158e10b4e50
Open this URL in Tor Browser. Browsing leak sites carries real risk — view passively, never click further.
Disclaimer
HackerFeeds does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.

