Ransomware victim disclosure
← All victimsMolinos Cabodi Hnos. S.A.
listed as molinoscabodi.com.ar · Claimed by Threeam · listed 19 hours ago
Status timeline
- ListedJun 12, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileMolinos Cabodi Hnos. S.A. is an Argentine flour and grain milling company established in 1853, producing various flour types including Harina 000, semolina, and specialized baking flours. The company operates modern milling and processing facilities in Buenos Aires province and serves clients across the MERCOSUR region.
- Industry
- Grain Milling & Flour Production
- Address
- Irigoyen 115, Rojas (2705), Provincia de Buenos Aires, Argentina
- Founded
- 1853
Attack summary
Severity: medium — Data published status confirms exfiltration occurred, but no proof files/screenshots are documented in the post excerpt, and the nature and sensitivity of the data is not specified. The lack of detail on data category (financial, customer, operational) and absence of visible proof prevents higher classification.ThreeAM claims to have attacked Molinos Cabodi and published exfiltrated data. The group's leak post references the company's operations but does not specify what data was encrypted or exfiltrated, nor does it detail operational impact.
Data the group says was taken
AI dossier — extracted from the leak post- Business records
- Operational data
What the group claims
Molinos Cabodi Hnos. S.A. has been providing high-quality flour products since 1853, including various types of flour such as Harina 000, Harina 000 Pan de Miga, and semolina. The company serves clients across the MERCOSUR region, offering persona
Sources
Source
Indexed 19 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

