Ransomware victim disclosure
← All victimsBlack Hills Bentonite
Claimed by Wallstreet · listed 21 days ago
Status timeline
- ListedAug 10, 2026
- Data leakeddate unknown
At a glance
- Group
- Wallstreet
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- Aug 10, 2026
About the victim
AI dossier — public-source company profileBlack Hills Bentonite LLC is a Wyoming-based producer of sodium bentonite and lignite-related products. They supply industrial and commercial markets including drilling fluids, environmental sealing, absorbents, and metal casting applications.
- Industry
- Mining & Mineral Processing
Attack summary
Severity: medium — Data has been published by the threat actor, confirming exfiltration. However, no specific sensitive data categories (PII at scale, financial records, trade secrets) are explicitly identified in the post excerpt, and no proof files/screenshots are quantified.The Wallstreet group claims to have compromised Black Hills Bentonite and published exfiltrated data. Specific details about encryption, data types, or volume are not provided in the available post excerpt.
Data the group says was taken
AI dossier — extracted from the leak post- Business records
- Customer data
- Industrial specifications
What the group claims
Black Hills Bentonite LLC (bhbentonite.com) is a Wyoming-based producer of high-quality sodium bentonite, along with lignite-related products, supplying global industrial and commercial uses such as drilling fluids, environmental/civil engineering sealing, absorbents (including cat litter), and metal casting/foundry applications
Source
Indexed 21 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

