SHINDO2

Washington Hotel Corporation

RansomwareSize not disclosed

POSSIBLE LEAKClosed (final report)

Open in the live monitor ▶
Disclosed
Feb 14, 2026
Detected
Feb 13, 2026 22:00 JST
Detection to disclosure
1 day
Leak
Leak possible
Type
Ransomware
Status
Closed (final report)
Security spend
Not checked yet
Compensation
Not announced

What leaked

UnspecifiedSome employee personal data stored on the management server

Not leaked

  • Washington Net member information
  • Hotel guest information

Who is affected

  • Employees

Cause

Unauthorized access through an external connection device; part of the servers were encrypted

Timeline

  1. Unauthorized access via an external connection device and server encryption found
  2. First report
  3. Second report
  4. Third report
  5. Final report

Response

  • Forensic investigation

Consulted the police and outside specialists; an outside firm carried out a forensic investigation

What you should do

  1. Expect targeted phishing posing as HR or interview contacts
  2. Check the company's notice to see if you're affected

Lessons for companies

  1. Patch internet-facing servers, VPNs and admin panels first. Exploits follow disclosure within days
  2. Offline backups with restore drills; segment the network
  3. Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
  4. Run red teaming and AI-assisted hardening, and publish how much you invest

Sources