Listen to this Post

A Shocking Leak That Exposes
In an alarming development from the dark web, the ransomware group Everest has released the entire data cache stolen from New American Funding, a major mortgage lender in the U.S., after failed ransom negotiations. This breach sheds light on the growing threat posed by cybercriminals who use stolen data as leverage, and the devastating consequences when companies refuse to pay.
The leak was first reported by Dark Web Intelligence on X (formerly Twitter), confirming that the full dataset is now public on underground forums. The breach has sent shockwaves through the cybersecurity community and raised concerns about the exposure of sensitive financial and personal information belonging to thousands—if not millions—of Americans.
📄 the Data Leak Incident
The cybercrime gang known as Everest has claimed responsibility for leaking the complete data set stolen from New American Funding, one of the largest mortgage lenders in the United States. According to the report by Dark Web Intelligence, this leak came after the company refused to meet ransom demands made by the group.
The leaked data reportedly contains highly sensitive personal and financial information, which may include:
Customer names, Social Security Numbers
Loan documentation and mortgage applications
Internal employee records
Corporate communications and internal operations data
This
The company has not issued a detailed public statement yet, but sources familiar with the matter claim that internal investigations are underway, and law enforcement agencies have been notified.
In the past, Everest has demonstrated a pattern: encrypt the victim’s files, exfiltrate sensitive data, and then threaten public exposure if a ransom isn’t paid. In this case, it seems the group followed through with their threat, dumping the entire data set online when their demands were not met.
Dark web monitors suggest that the leaked data is now being traded on various forums, increasing the risk of identity theft, financial fraud, and phishing attacks targeting both clients and employees of New American Funding.
🔎 What Undercode Say:
Inside the Cyberattack – A Deeper Look at the Threat Landscape
This latest leak highlights a disturbing trend in ransomware operations: double extortion. Cybercriminals no longer settle for encrypting files—they also exfiltrate sensitive data, weaponizing it for ransom demands. If payment isn’t made, the stolen information is either sold or released.
In the case of New American Funding, this incident shows a calculated and professional operation by Everest. Their use of full data dumps, rather than partial leaks or encrypted samples, signals a no-negotiation strategy designed to instill fear in other potential targets.
The mortgage sector is particularly vulnerable due to its dependency on sensitive consumer data, yet cybersecurity in this space often lags behind. Most mortgage companies maintain vast archives of:
Credit reports
ID scans
Bank account details
Property records
Everest’s successful infiltration likely involved exploiting third-party vulnerabilities or weak internal protocols—common entry points for many ransomware gangs. It’s a wake-up call for industries that handle PII (Personally Identifiable Information) but don’t invest proportionally in their cybersecurity infrastructure.
Furthermore, the delay in public disclosure by New American Funding could lead to regulatory scrutiny, especially under U.S. consumer data protection laws. If it’s proven they failed to inform affected individuals in a timely manner, fines and class action lawsuits could follow.
Undercode warns that this breach will likely become a blueprint for future ransomware gangs—especially those that see full data leaks as an effective means of punishment and publicity. It also poses a massive challenge for law enforcement, as dark web sites where these leaks are posted often operate from jurisdictions with no extradition treaties, making prosecution nearly impossible.
Cybercrime experts recommend that companies not only maintain offline backups and incident response plans but also invest in threat intelligence tools to detect breaches before they escalate.
✅ Fact Checker Results:
✅ Everest is a known ransomware group active on the dark web
✅ Data leak has been confirmed and is available on dark web forums
❌ No official full public statement has yet been released by New American Funding
🔮 Prediction:
Expect a surge in phishing campaigns, identity fraud, and cyber scams targeting both customers and employees of New American Funding. Everest’s successful leak may encourage copycat groups to intensify attacks on the financial sector. Regulatory bodies could step in soon with stricter cybersecurity mandates for mortgage and real estate industries. The fallout may not be over for New American Funding—and this could only be the beginning of more dark web chaos.
References:
Reported By: x.com
Extra Source Hub:
https://www.instagram.com
Wikipedia
OpenAi & Undercode AI
Image Source:
Unsplash
Undercode AI DI v2




