Ransomware victim disclosure
← All victimsGreen Resource
Claimed by genesis · listed 4 days ago
Status timeline
- Listed
May 30, 2026
- Data leaked
At a glance
About the victim
AI dossier — public-source company profileGreen Resource is a professional-grade distributor of fertilizer, chemicals, seed, and erosion control products serving the Southeast United States from six warehouses. The company appears to operate as a B2B supplier to agricultural and landscaping markets.
- Industry
- Agricultural & Horticultural Chemicals & Supplies Distribution
Attack summary
Severity: high — Confirmed exfiltration of 400 GB of sensitive business data including financial records, supply-chain intelligence, contracts, and internal network access (user folders). Data has been published. Business operations and competitive position at risk.The Genesis group claims to have exfiltrated approximately 400 GB of data including project data, sales data, accounting records, supply-chain information, network user folders, contracts, NDAs, and company fileserver contents. The group has published the data without stated ransom demands.
Data the group says was taken
AI dossier — extracted from the leak post- Project data
- Sales data
- Accounting data
- Supply-chain data
- Network user folders
- Contracts
- NDAs
- Company fileserver contents
What the group claims
A leading distributor of professional fertilizers, chemicals, and seeds for local and lawn grasses
The leak post
captured from the group's siteGreen Resource is a leading distributor of professional-grade fertilizer, chemicals, seed, and erosion control products, serving the Southeast from six strategically located warehouses. ``` - 400 GB of accessible data. - Project data. - Sales data. - Accounting Data. - Supply-chain data. - Network users folders. - Contracts and NDA's. - Data from company fileserver. ``` [Download The List of Company Files](http://genesis6ixpb5mcy4kudybtw5op2wqlrkocfogbnenz3c647ibqixiad.onion/download/dbc7eb0c136da6d5eff7.txt)
Screenshot of the leak post

Sources
Source
Indexed 4 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
