Ransomware victim disclosure
← All victimsCarhartt, Inc.
Claimed by Shinyhunters · listed 4 days ago
Status timeline
- ListedAug 14, 2026
- Data leakeddate unknown
At a glance
- Group
- Shinyhunters
- Status
- Data leaked
- Country
- United States
- Sector
- Retail & E-Commerce
- Listed on leak site
- Aug 14, 2026
About the victim
AI dossier — public-source company profileCarhartt, Inc. is a US-based retail and e-commerce company operating the carhartt.com platform.
- Industry
- Retail & E-Commerce
Attack summary
Severity: critical — Confirmed exfiltration of customer PII at large scale (millions of records) plus employee data and sensitive internal information. The 50GB+ data size and breadth of sensitive information categories (PII, royalty metadata, employee records) indicates significant regulated/sensitive data exposure affecting a major retailer.ShinyHunters claims to have exfiltrated millions of customer records and employee data totaling 50GB+ (compressed). The group alleges that sensitive information including customer PII, royalty metadata, and internal corporate data was compromised. Carhartt declined to negotiate after the group demanded $3.3 million.
Data the group says was taken
AI dossier — extracted from the leak post- customer records (millions)
- customer PII
- employee data
- customer metadata (royalty information)
- internal corporate data
What the group claims
Our demand for this Company was $3.3 million. The Company reached out. However, The Company did not try to negotiate. If The Company attempted to negotiate with us The Company would've ended up saving a good chunk of money. Instead they decided to do (see blow); this is also because The Company hired a very unskilled and incompetent negotiator. If The Company hired competency to negotiate for them, this post would've never been published. [21:24:22] carhartt: After careful review and internal discussions with leadership, we have decided not to move forward with negotiations or further discussions. We appreciate your patience throughout this process. There is millions of customers of data involved here. As we always say, these companies don't care. Millions of records of customer data and vast amount of sensitive information and PII containing employee, customer, customer metadata (royalty info), and other internal corporate data was compromised. The Company failed to reach an agreement with us despite our incredible patience, all the chances and offers we made. They don't care. | Size: 50GB+ (compressed) | Updated: 13 August 2026 | SHA256: 6b37f770382ce82bfa4677466cc51d9269e5a70436eecf101fae6fa9d5d8e8ac
Sources
- Victim sitecarhartt.com
Source
Indexed 4 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

