Ransomware victim disclosure
← All victimsRoyal Wine Corp
Claimed by Akira · listed 4 months ago
Status timeline
- ListedFeb 4, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Listed on leak site
- Feb 4, 2026
- Data size
- 25 GB
About the victim
AI dossier — public-source company profileRoyal Wine Corp is a family-owned company specializing in the production and distribution of high-quality kosher wines, liqueurs, and spirits. The company maintains a diverse portfolio with an emphasis on Israeli selections and serves wine and spirit enthusiasts seeking authentic kosher beverages. It operates in the United States.
- Industry
- Kosher Wine & Spirits Distribution
Attack summary
Severity: critical — The threat actor claims exfiltration of regulated PII at scale including SSNs, health information, and financial/credit card data for both employees and clients, constituting a multi-category sensitive data breach with confirmed data publication status.Akira claims to have exfiltrated approximately 25 GB of corporate data from Royal Wine Corp, including detailed employee personal information (SSNs, passports, driver's licenses, health information, credit card data), client information (projects, contracts, contacts), financial records, and NDAs, with publication of the data described as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee SSNs
- Passports
- Driver's licenses
- Employee health information
- Credit card data
- Client project records
- Client contracts
- Client contact information
- Financial records
- NDAs
What the group claims
Royal Wine Corp is a family-owned company specializing in the pro duction and distribution of high-quality kosher wines, liqueurs, and spirits. The company offers a diverse portfolio, including va rious brands of wines and spirits, with an emphasis on its Israel i selections. Their target clients include wine and spirit enthus iasts looking for unique and authentic kosher beverages. We will upload 25gb of corporate data soon. Detailed employee per sonal information (SSNs, passports, DLs, health information, cred it cards and so on), clients information (projects, contracts, co ntacts), financials, NDAs, etc.
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

