Ransomware victim disclosure
← All victimsDakkota Integrated Systems
listed as dakkota.com · Claimed by chaos · listed 6 months ago
Status timeline
- Listed
Dec 2, 2025
- Data leaked
At a glance
- Group
- chaos
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- Dec 2, 2025
About the victim
AI dossier — public-source company profileDakkota Integrated Systems is one of the largest Native American women-owned manufacturing companies in the United States, founded in 2001. The company specializes in complex build-to-order automotive assembly including cockpit, overhead, instrument panel, fascia, and suspension systems. It operates more than 14 plants across the United States and Canada, employing over 2,500 people and delivering components on a just-in-time basis to OEM customers.
- Industry
- Automotive Components Assembly & Manufacturing
- Employees
- 2500+
- Founded
- 2001
Attack summary
Severity: high — Data has been published by the threat actor, confirming exfiltration from a major automotive OEM supplier with over 2,500 employees. Likely includes employee PII, supplier data, and proprietary manufacturing/logistics information across 14 sites, representing significant business and potentially regulated personal data exposure.The Chaos ransomware group claims to have attacked Dakkota Integrated Systems and has published data ('data_published' status), indicating exfiltration of company data. No ransom amount or specific data volume was stated in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Employee records (US and Canadian portals referenced)
- Supplier information
- Manufacturing process data
- Materials planning and logistics data
- Quality systems data
- Operational/assembly data
What the group claims
Founded in 2001, Dakkota Integrated Systems is a manufacturing company that provides a variety of build-to-order manufacturing processes including cockpit, overhead, and fascia systems and more.
Sources
Source
Indexed 6 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
