Ransomware victim disclosure
← All victimsNTN Bearing Corporation of America
Claimed by Payoutsking · listed 1 month ago
Status timeline
- ListedMay 13, 2026
- Data leakeddate unknown
At a glance
- Group
- Payoutsking
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- May 13, 2026
About the victim
AI dossier — public-source company profileNTN Bearing Corporation of America is a US-based subsidiary of Japan's NTN Corporation, a leading global manufacturer of precision bearings, constant velocity joints, and industrial mechanical components. Headquartered in Mount Prospect, Illinois, the company serves automotive, aerospace, and industrial machinery markets across North America with over 100 years of operating history and a global presence of over 75 plants.
- Industry
- Industrial Bearings & Precision Components Manufacturing
- Address
- Mount Prospect, Illinois, US
Attack summary
Severity: medium — Disclosed status indicates data_published, suggesting confirmed exfiltration; however, no specific sensitive data categories (PII, financial, IP) are enumerated in the available post excerpt, and no proof file count is documented. The company handles industrial/manufacturing data with potential IP value but lacks evidence of regulated data exposure.The payoutsking group claims to have conducted an attack on NTN Bearing Corporation of America. The leak post indicates data has been published, though specific details regarding encryption, exfiltration scope, or data categories are not provided in the available excerpts.
Original description
AI-summarised, not from the leak postNTN Bearing Corporation of America is a US-based subsidiary of Japan's NTN Corporation, operating in the industrial manufacturing sector. The company produces and distributes precision bearings, driveshafts, and related mechanical components used in automotive, aerospace, and industrial machinery applications. Headquartered in Mount Prospect, Illinois, it serves customers across North America with engineering support and distribution services.
Sources
Source
Indexed 1 month agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

