Ransomware victim disclosure
← All victimsMacAllister Machinery
listed as macallister.com · Claimed by Chaos · listed 3 days ago
Status timeline
- ListedAug 28, 2026
- Data leakeddate unknown
At a glance
- Group
- Chaos
- Status
- Data leaked
- Country
- United Kingdom
- Listed on leak site
- Aug 28, 2026
About the victim
AI dossier — public-source company profileMacAllister Machinery is a Caterpillar dealer operating in Indiana and Michigan, providing new and used heavy construction equipment, power generation systems, rental services, and related equipment from manufacturers including Caterpillar, Kubota, and others. The company operates multiple business divisions including rentals, power systems, used equipment, transportation, agriculture, railroad services, and outdoor equipment.
- Industry
- Heavy Equipment & Machinery Distribution
- Address
- Indiana & Michigan, USA
Attack summary
Severity: medium — Confirmed exfiltration claim with stated intent to publish data, but no proof files advertised in the leak post, no specific data categories disclosed, and no operational disruption claimed. Moderate sensitivity due to business data exposure for a mid-sized machinery distribution company.The Chaos group claims to have breached MacAllister Machinery and extracted data. The group states that management refused engagement regarding the security breach and is proceeding to publish exfiltrated data.
Data the group says was taken
AI dossier — extracted from the leak post- Business records
- Company systems data
What the group claims
MacAllister (macallister.com) — Countdown to Publication Management at MacAllister has chosen to completely ignore all attempts to establish a constructive dialogue regarding their security breach. Silence will not make this situation go away. Since leadership refuses to engage, we are moving fo…
Sources
Source
Indexed 3 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

