Ransomware victim disclosure
← All victimsMackay Sugar
Claimed by Thegentlemen · listed 7 hours ago
Status timeline
- ListedJun 15, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- Australia
- Listed on leak site
- Jun 15, 2026
About the victim
AI dossier — public-source company profileMackay Sugar is Australia's second-largest sugar manufacturer, headquartered in tropical North Queensland with over 140 years of history. Primarily owned by local sugarcane farmers, the company operates major mills producing raw sugar, molasses, and renewable electricity from bagasse, with annual turnover exceeding $600 million.
- Industry
- Sugar Manufacturing & Renewable Energy
- Address
- Mackay, North Queensland, Australia
- Employees
- 51-200
- Founded
- 1884
Attack summary
Severity: medium — Company data has been published by a ransomware actor; however, no specific data types, volume, or proof samples are described in the leak post excerpt. The disclosure status is marked 'data_published' but content details are absent, warranting medium severity pending evidence of sensitive data exposure.The threat actor claims to have accessed Mackay Sugar's systems and published data. The post does not specify encryption, exfiltration, or ransomware demands, and no data samples or proof files are referenced in the available excerpt.
What the group claims
***.com.au zoominfo.com/c/mackay-sugar-ltd/1147904633 Mackay Sugar is Australia's second-largest sugar manufacturer, headquartered in tropical North Queensland with over 140 years of rich industry heritage. Owned primarily by local sugarcane farmers, the company operates major mills to produce raw sugar, molasses, and renewable electricity generated from bagasse. With an annual turnover exceeding $600 million, they serve as a vital economic pillar in the region, dedicated to sustainable practices and supplying high-quality products to global markets
Sources
- Victim sitemkysugar.com.au
Source
Indexed 7 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

