Ransomware victim disclosure
← All victimsCF Supply
Claimed by Akira · listed 5 days ago
Status timeline
- ListedAug 13, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Sector
- Retail & E-Commerce
- Listed on leak site
- Aug 13, 2026
About the victim
AI dossier — public-source company profileCF Supply is a Texas-based distributor of construction materials including drywall, metal framing, insulation, and door hardware. The company offers services such as free estimates and 24-hour online account access to clients.
- Industry
- Construction Materials & Hardware Distribution
Attack summary
Severity: medium — Data exfiltration of client personal information and business contracts is claimed but not yet published; no proof files are advertised in this truncated post. Sensitivity is moderate (client PII and commercial contracts) but scale and confirmation are unclear.The Akira group claims to have exfiltrated corporate data and intends to publish client information, contracts, and agreements. No encryption or operational disruption is mentioned in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Client information (projects, personal information)
- Contracts and agreements
What the group claims
CF Supply is a Texas-based company that offers a wide range of construction products including drywall, metal framing, insulation, and door hardware. They provide services such as free estim ates and 24-hour online account access, ensuring convenience for their clients. We will upload corporate data soon. Client information (projects, personal information and so o n), contracts and agreements and so on.
Source
Indexed 5 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

