Ransomware victim disclosure
← All victimsBee Maid Honey Limited
listed as Bee Maid Honey · Claimed by Akira · listed 4 hours ago
Status timeline
- ListedSep 16, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileBee Maid Honey Limited is the marketing and processing arm of the Alberta Honey Producers Cooperative Limited and the Manitoba Cooperative Honey Producers Limited. The company processes and packages honey from western Canadian beekeepers at facilities in Winnipeg, MB and Spruce Grove, AB.
- Industry
- Honey Processing & Distribution
- Address
- Winnipeg, MB and Spruce Grove, AB, Canada
Attack summary
Severity: high — Confirmed exfiltration of significant volumes of regulated personal data (PII including government-issued IDs and vital records) plus financial and proprietary business information from a cooperative enterprise.The Akira group claims to have exfiltrated approximately 46 GB of corporate data including employee personal information (passports, driver's licenses, death certificates, HR files), financial records, confidential internal files, projects, contracts, agreements, and NDAs.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal information (passports, driver's licenses, death certificates)
- HR files
- Financial records
- Confidential internal files
- Projects and contracts
- Agreements and NDAs
What the group claims
Bee Maid Honey Limited is the marketing arm of the Alberta Honey Producers Cooperative Limited and the Manitoba Cooperative Honey Producers Limited. Honey produced by beekeepers in western C anada is processed and packaged at Bee Maid's Winnipeg, MB and Spruce Grove, AB plants. We will upload 46gb of corporate data soon. Employee personal information (passports numbers, D Ls, death certs and other HR files), financials, confidential internal files, projects, contrac ts and agreements, NDA and so on.
Source
Indexed 4 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

