Ransomware victim disclosure
← All victimsgranbyindustries.com
Claimed by Blackbasta · listed 2 years ago
Status timeline
- ListedJan 11, 2025
- Data leakeddate unknown
At a glance
- Group
- Blackbasta
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- Jan 11, 2025
About the victim
AI dossier — public-source company profileGranby Industries is a manufacturer and distributor of steel and fiberglass storage tanks and heating products serving North America. Founded in 1954 and headquartered in Cowansville, Quebec, the company operates across the United States and Canada.
- Industry
- Storage Tanks & Heating Equipment Manufacturing
- Address
- 98, rue des Industries, Cowansville, Quebec J2K 0A1, Canada
- Founded
- 1954
Attack summary
Severity: critical — Confirmed large-scale exfiltration (1.2 TB) of sensitive regulated data including employee PII, tax forms, financial/payroll records, and proprietary R&D materials. Data has been published.BlackBasta claims to have exfiltrated approximately 1.2 TB of data including corporate financial records, employee personal information, HR documents, tax forms, R&D engineering drawings, and projects.
Data the group says was taken
AI dossier — extracted from the leak post- Corporate data
- Financial data and accounting records
- Payroll information
- Employee personal data
- HR documents and personal information forms
- Tax forms
- R&D engineering drawings and projects
What the group claims
Granby Industries, founded in 1954, is a leading manufacturer and distributor of storage tanks and heating products in North America. The company is headquartered in Cowansville, Quebec, Canada, and operates primarily in the United States and Canada.SITE: www.granbyindustries.comADDRESS: 98, rue des Industries Cowansville, Quebec J2K 0A1 CanadaTEL#: (800) 839-2070ALL DATA SIZE: ≈1.2tb 1. Corp data, Financial data, Accounting, Payroll 2. Personal employees data and documents 3. Human Resources, Personal info forms, Tax forms 4. R&D, Engeneering, Drawings, Projects & etc…
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

