Ransomware victim disclosure
← All victimstuftco
Claimed by INC Ransom · listed 4 months ago
Status timeline
- ListedFeb 9, 2026
- Data leakeddate unknown
At a glance
- Group
- INC Ransom
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- Feb 9, 2026
- Data size
- 100 GB
About the victim
AI dossier — public-source company profileTuftco is a world-leading manufacturer of tufting machines and equipment for the carpet industry. The company provides comprehensive solutions for carpet mills, covering the full production process from tufting through to finished carpet. It is based in the United States.
- Industry
- Textile Machinery Manufacturing
Attack summary
Severity: high — 100 GB of confirmed exfiltrated and published data includes client PII, financial databases with all transactions, NDAs, and business agreements — representing significant business and potentially regulated data exposure at scale.INC Ransom claims to have exfiltrated approximately 100 GB of data from Tuftco, including confidential documents, client data, NDAs, financial data and databases, operational records, corporate data, business agreements, and development materials. The data has been published on the group's leak site.
Data the group says was taken
AI dossier — extracted from the leak post- Confidential documents
- Client data
- NDAs
- Financial data
- Operations records
- Corporate data
- Business agreements
- Development materials
- Financial databases
- Transaction records
What the group claims
Tuftco is a world-leading manufacturer of tufting machines and equipment, providing comprehensive solutions for carpet mills from tufting to finished carpet Laek: 100GB WE HAS COLLECTED SUCH DATA AS: - Confidential documents - Clients Data - NDA - Financial data - Operations - Corporate data - Business Agreements - Development - Financial databases, all transactions, all clients And a lot of other VERY IMPORTANT information!
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

