Ransomware victim disclosure
← All victimsLeviton
Claimed by Dark Project · listed 14 days ago
Status timeline
- ListedAug 5, 2026
- Data leakeddate unknown
At a glance
- Group
- Dark Project
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- Aug 5, 2026
- Data size
- 50 GB
- Records
- 15000 files
About the victim
AI dossier — public-source company profileLeviton, founded in 1906 and headquartered in Melville, New York, is a global manufacturer of electrical wiring devices, data center connectivity solutions, and lighting energy management systems. The company serves residential, commercial, and industrial markets with products ranging from outlets and switches to smart home and EV charging infrastructure.
- Industry
- Electrical Wiring Devices & Lighting Controls Manufacturing
- Address
- Melville, New York, US
- Founded
- 1906
Attack summary
Severity: critical — Confirmed exfiltration of 1.4 TB including financial records, proprietary schematics, and employee PII at significant scale from a major manufacturing company; total system compromise claimed.Dark Project claims to have exfiltrated approximately 1.4 terabytes of data from Leviton's entire sensitive data repository, including internal financial records, proprietary project schematics, working documents, and employee personal data, indicating a total system compromise.
Data the group says was taken
AI dossier — extracted from the leak post- internal financial records
- proprietary project schematics
- working documents
- employee personal data
- unclassified but highly sensitive information
What the group claims
About Leviton Founded in 1906 and headquartered in Melville, New York, Leviton is a privately held global provider of electrical wiring devices, data center connectivity solutions, and lighting energy management systems. A major cyber attack has resulted in the Leviton company losing control over its entire repository of sensitive data, totaling approximately 1.4 terabytes. The massive breach exposed a wide range of highly confidential information, including internal financial records, proprietary project schematics and working documents, as well as the personal data of employees. Additionally, a significant quantity of other unclassified but highly sensitive information was exfiltrated in the breach, painting a stark picture of a total system compromise.
The leak post
captured from the group's site> Initializing Dark Project interface... [ Reid Electric Service, Inc has suffered a cyberattack on its service systems, resulting in the theft of approximately 50 GB of sensitive data. The breached information includes employees' personal data and detailed architectural plans of clients' buildings. ](http://darkprn3d3udnhpuxknsrhft3376lrz5tenhgkrxge5hxqe46pkbrwid.onion/article?slug=reid-electric-service-inc) [ A cyberattack has resulted in the exfiltration of nearly 300 gigabytes of highly sensitive data, exposing a vast trove of internal records. The compromised material includes personal employee documents, confidential company financial records, invoices, taxpayer statements, and extensive client information. More than 10,000 PDF files have been leaked, containing unredacted Social Security numbers, driver’s licenses, payroll records, and other protected identifiers, raising the specter of widespread identity theft and regulatory scrutiny. ](http://darkprn3d3udnhpuxknsrhft3376lrz5tenhgkrxge5hxqe46pkbrwid.onion/article?slug=tsc-logistics) [ Following a successful cyberattack on Long Lewis, more than 500 GB of confidential information was stolen. More than 15,000 records containi…
Screenshot of the leak post

Sources
Source
Indexed 14 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

