Charles Keith
charleskeith.com zoominfo.com/c/charles--keith-pte-ltd/347827969 CHARLES & KEITH Singapore-based fashion brand founded in 1996 by brothers Charles and Keith Wong, selling women's shoes, bags, wallets and accessories. Its model is vertical integration: own designs, direct Asian factories and a fast-fashion pace of 20–30 new styles a week, delivering a "luxury look at an affordable price" (shoes ~$40–220, bags ~$30–190). Today it runs about 700 stores across 30+ countries with revenue of roughly US$1 billion. Marketing is driven by K-pop ambassadors (ITZY, Han So Hee, Kim You Jung) and Met Gala appearances, plus lines like L'INITIAL and PEDRO. Fully family-owned (it bought back LVMH's 20% stake in 2016), it is one of Asia's biggest fashion exporters. Main weak spots: paid/slow online returns and average durability of PU-leather products.
Incident Details
- Threat Group
- thegentlemen
- Victim / Organization
- Charles Keith
- Website / Domain
- charleskeith.com
- Industry Sector
- Retail & E-Commerce
- Country / Region
- 🇸🇬 SG
- Date Discovered
- Saturday, September 26, 2026
What This Listing Means
Posting on thegentlemen's ransomware leak site typically signals that the threat actor claims to have:
- ▸Gained unauthorized access to the organization's network via phishing, exposed credentials, or an unpatched vulnerability
- ▸Exfiltrated sensitive data — potentially including financial records, PII, customer data, or trade secrets
- ▸Deployed ransomware to encrypt systems and disrupt operations
- ▸Issued a ransom demand with a deadline to publish all stolen data publicly if unpaid
Open Source Investigation
Is This Your Organization?
Security Arsenal provides 24/7 ransomware incident response. We contain active attacks, support ransom negotiation decisions, perform forensic analysis, and recover your data.
Get Emergency ResponseIR Services OverviewProtect Your Organization
- AlertMonitor
Dark web & ransomware monitoring for your domains
- Managed SOC & MDR
24/7 threat detection and response
- Penetration Testing
Find ransomware entry points before attackers do