Data breach
Ail Hospitality Group
- Records
- 11,086
- Breach date
- 7 March 2025Estimated
- Added
- 27 August 2026
What was exposed
7 types of data · 2 put you at serious risk
- Names11,086
- Phone numbers4,608
- Street addresses2,211
- Email addresses1,634
- Social security numbers1,622
- Dates of birth1,410
- Driving licence numbers1
About this breach
Ail Hospitality Group, a hotel operations and management company that runs a portfolio of properties in states including West Virginia, Maryland, Ohio, and Pennsylvania, has been linked to a data breach affecting thousands of individuals. A dataset containing 11,086 records tied to the company was added to its index on August 27, 2026, with an estimated breach date of March 7, 2025. The breach has not been publicly claimed by any actor in the records, though external tracking sites attribute an attack on the company to a ransomware group. No ransom demand amount or victim notification notice has been verified.
Limited public reporting: As of September 25, 2026, detailed company notices or major news coverage for this listing were limited in sources reviewed. The facts below rely primarily on the indexed fields plus any secondary sources cited.
Breach Timeline
July 3, 2025: Ransomware.live and HookPhish record an estimated attack date for Ail Hospitality Group attributed to a ransomware group tracked as "pear."
August 5, 2025: The listing for Ail Hospitality Group was discovered on the group's leak site, per Ransomware.live and HookPhish.
What Information Was Compromised?
Our analysis found the following data types in this breach: names (11,086), phone numbers (4,608), street addresses (2,211), email addresses (1,634), Social Security numbers (1,622), and dates of birth (1,410). The dataset also references driver's license information, though the investigation team could not determine how many records include it.
Not every individual is affected by every type of data listed here.
What Are the Potential Risks for Affected Individuals?
The combination of names, addresses, phone numbers, and email addresses gives scammers the raw material for convincing phishing calls, texts, and emails. Because the breach includes dates of birth and, for more than 1,600 records, Social Security numbers, the risk extends beyond nuisance spam. Criminals can use these details to open accounts, file fraudulent tax returns, or impersonate victims with institutions that verify identity using name-plus-birthday-plus-SSN combinations. People whose driver's license details appear in the dataset face additional exposure, since license numbers are frequently used for identity verification. It is worth noting that it is unclear whether the affected records relate to hotel guests, employees, or both.
What Should You Do If You Were Affected?
Place a free fraud alert or credit freeze with the three major credit bureaus: Equifax, Experian, and TransUnion. A credit freeze is the stronger option and costs nothing.
Order free credit reports at annualcreditreport.com and review them for accounts or inquiries you do not recognize.
If your Social Security number was exposed, check your earnings record with the Social Security Administration and consider an IRS Identity Protection PIN if tax fraud is a concern.
Watch for phishing attempts that reference hotel stays, reservations, or employment, and do not click links or share codes in unexpected messages.
If your driver's license number may be involved, ask your state motor vehicle agency about its procedures for flagging or replacing compromised license numbers.
Use unique passwords and, where available, two-factor authentication on email and financial accounts.
