Ransomware victim disclosure
← All victimsScrubaDub Auto Wash Centers
Claimed by Akira · listed 2 days ago
Status timeline
- ListedSep 2, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Sector
- Retail & E-Commerce
- Listed on leak site
- Sep 2, 2026
About the victim
AI dossier — public-source company profileScrubaDub Auto Wash Centers is New England's leading auto wash operator with over 20 locations across Massachusetts, New Hampshire, Maine, and Rhode Island. They offer customizable tunnel and touchless washes, interior cleaning, and detailing services.
- Industry
- Automotive Services & Car Washing
- Employees
- 51-200
Attack summary
Severity: high — Confirmed exfiltration of regulated personal data at scale (PII of 22+ employees including government IDs, plus client information) combined with financial and payment data exposure. Active threat of data publication.Akira claims to have exfiltrated employee personal information (passport numbers, driver's licenses for 22 employees, contact details), client information (addresses, contacts), company financials, and payment details. The group states corporate data will be uploaded.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal identification (passports, driver's licenses)
- Employee contact information
- Client addresses and contact information
- Company financial records
- Payment details
What the group claims
ScrubaDub Car Wash is New England's leading auto wash, offering customizable tunnel and touchle ss washes, interior cleaning, and detailing services across over 20 locations in Massachusetts, New Hampshire, Maine, and Rhode Island. We will upload corporate data soon. Employee personal information (passport numbers, DLs of 22 employees, contact information), clients information (addresses, contacts and so on), company f inancials, payment details.
Source
Indexed 2 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

