Ransomware victim disclosure
← All victimsMyPillow
Claimed by play · listed 6 days ago
Status timeline
- Listed
May 25, 2026
- Data leaked
At a glance
- Group
- play
- Status
- Data leaked
- Country
- US
- Sector
- Consumer Services
- Listed on leak site
- May 25, 2026
About the victim
AI dossier — public-source company profileMyPillow is a US-based manufacturer and retailer of pillows and bedding products, founded in 2009. The company operates manufacturing facilities and sells products through direct-to-consumer channels, retail partnerships, and online platforms. MyPillow is a publicly prominent consumer goods company with significant market presence.
- Industry
- Consumer Goods & Bedding Manufacturing
- Address
- Shakopee, Minnesota, United States
- Employees
- 3000+
- Founded
- 2009
Attack summary
Severity: medium — Confirmed data publication by a ransomware group, but the truncated leak post provides no details on data type, volume, or proof artifacts. No clear indication of regulated data (PII at scale, financial, medical) or operational impact. Classification as medium due to confirmed disclosure without substantiating details.The Play ransomware group claims to have compromised MyPillow and published data. No specific details on the nature of the breach (encryption, exfiltration, or both) or the scope of data affected are provided in the truncated leak post.
What the group claims
United States
Sources
Source
Indexed 6 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
