Ransomware victim disclosure
← All victimsCherokee Distributing Co
Claimed by akira · listed 10 hours ago
Status timeline
- Listed
Jun 3, 2026
- Data leaked
At a glance
- Group
- akira
- Status
- Data leaked
- Country
- US
- Sector
- Transportation/Logistics
- Listed on leak site
- Jun 3, 2026
About the victim
AI dossier — public-source company profileCherokee Distributing Company is a beer and nonalcoholic beverage distributor based in Knoxville, Tennessee, with distribution centers across five additional Tennessee locations (Chattanooga, Cookeville, Kingsport, Pulaski, Tullahoma). The company operates as a regional distributor for leading beverage brands.
- Industry
- Beverage Distribution & Logistics
- Address
- Knoxville, Tennessee, US (headquarters); distribution centers in Chattanooga, Cookeville, Kingsport, Pulaski, and Tullahoma, Tennessee
Attack summary
Severity: critical — Confirmed exfiltration of large-scale regulated PII (SSNs, passports, driver's licenses) at organizational scale; data publication announced. High-volume sensitive employee and business data exposure presents significant regulatory and identity-theft risk.Akira claims to have exfiltrated approximately 40 GB of corporate data, including employee personal documents (passports, driver's licenses, Social Security numbers), contracts, partner/client files, detailed financials, projects, NDAs, and confidential business files. Data publication is stated as forthcoming.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal documents (passports, driver's licenses)
- Social Security numbers
- Employment contracts and agreements
- Partner and client files
- Financial records and statements
- Project documentation
- Non-Disclosure Agreements
- Confidential business files
What the group claims
Cherokee Distributing Company offers the leading brands of beer and other nonalcoholic beverage s. In addition to their headquarters in Knoxville, they manage distribution centers in Chattano oga, Cookeville, Kingsport, Pulaski and Tullahoma. We will upload 40gb of corporate data soon. Employee personal docs (passports, DLs, SSNs), cont racts and agreements, partner and client files, detailed financials, projects, NDAs, confidenti al files, etc.
Source
Indexed 10 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
