Ransomware victim disclosure
← All victimsClifton Architectural Glass & Metal
Claimed by Pear · listed 5 hours ago
Status timeline
- ListedAug 21, 2026
- Data leakeddate unknown
At a glance
- Group
- Pear
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- Aug 21, 2026
About the victim
AI dossier — public-source company profileClifton Architectural Glass & Metal is a contract glazing company founded in 1927 that designs and fabricates custom architectural glass and metal products including shower doors, mirrors, and curtain wall systems. Based in Fairfield, New Jersey, the company operates from a 30,000 sq ft facility with over 50 employees and serves commercial and residential clients.
- Industry
- Architectural Glass & Metal Fabrication
- Address
- 15 Just Road, Fairfield, NJ 07004, US
- Employees
- 50+
- Founded
- 1927
Attack summary
Severity: high — Confirmed exfiltration of significant business data spanning multiple sensitive categories (financials, client PII, vendor/partner details, project IP, payment information, and communications). No operational disruption claimed but data scope is broad and affects multiple stakeholder groups.The pear group claims to have exfiltrated multiple categories of data including financial records, HR information, vendor and partner details, client data and contacts, project drawings, payment details, and email correspondence.
Data the group says was taken
AI dossier — extracted from the leak post- Financial records
- HR data
- Partner and vendor information
- Client data and contacts
- Project drawings and designs
- Payment details
- Email correspondence and mailboxes
What the group claims
A company that installs double-pane windows
The leak post
captured from the group's site| | | | | | **Clifton Architectural Glass & Metal ** Financials, HR, Partners’ & Vendors’ Data, Clients’ Private Data & Contacts, Projects & Drawings, Payment Details, Mailboxes & Email Correspondence, etc. | | --- | | | | | |
Sources
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

