Ransomware victim disclosure
← All victimsMassachusetts Municipal Wholesale Electric
Claimed by Blacksuit · listed 1 year ago
Status timeline
- ListedApr 4, 2025
- Data leakeddate unknown
At a glance
- Group
- Blacksuit
- Status
- Data leaked
- Country
- United States
- Sector
- Energy
- Listed on leak site
- Apr 4, 2025
About the victim
AI dossier — public-source company profileMassachusetts Municipal Wholesale Electric Company (MMWEC) is a public power joint action agency that provides wholesale electricity services and resource planning to 22 municipal utilities across Massachusetts. Founded in 1973, MMWEC manages power supply, coordinates large regional power plants, and oversees renewable energy projects including solar, wind, hydro, and nuclear assets.
- Industry
- Electric Utilities & Power Generation
- Address
- Ludlow, MA
- Founded
- 1973
Attack summary
Severity: high — Critical infrastructure (electric utility cooperative) with confirmed data exfiltration and publication. Access to MMWEC systems could expose operational, financial, and governance data affecting 22 municipal utilities and their customers across Massachusetts.Blacksuit claims to have compromised MMWEC and published exfiltrated data. No specific operational disruption or ransom demand is stated in the available leak post excerpt.
Data the group says was taken
AI dossier — extracted from the leak post- Financial information
- Board resolutions and meeting minutes
- Member utility data
- Power supply planning documents
- Corporate governance records
- Operational data
What the group claims
In the early 1970s, MMWEC worked to gather and focus the collective strength of municipal utilities on issues and developments that were threatening the viability of public power in Massachusetts. Joint action led to the acceptance of municipal utilities into the New England Power Pool in 1973, giving municipals the right to joint ownership in the large, regional power plants under development by private utilities.
Sources
Source
Indexed 1 year agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

