Ransomware victim disclosure
← All victimsH3co (formerly Hostetler Buildings)
listed as Hostetler Buildings · Claimed by Blacksuit · listed 2 years ago
Status timeline
- ListedSep 13, 2024
- Data leakeddate unknown
At a glance
- Group
- Blacksuit
- Status
- Data leaked
- Country
- United States
- Sector
- Business Services
- Listed on leak site
- Sep 13, 2024
About the victim
AI dossier — public-source company profileH3co, formerly known as Hostetler Buildings, is a Missouri-based manufacturer and solution provider founded in 1966. The company operates across feed mill manufacturing, poultry farm construction and supplies, and precision metal truss manufacturing, with headquarters in El Dorado Springs and multiple regional facilities. They position themselves as a values-driven enterprise serving farmers and agricultural stakeholders.
- Industry
- Agricultural & Industrial Manufacturing – Poultry Solutions, Feed Mills, Metal Buildings & Trusses
- Address
- 4065 E Hwy 54, El Dorado Springs, MO 64744
- Founded
- 1966
Attack summary
Severity: medium — Data has been published by the ransomware group (disclosed_status = 'data_published'), indicating confirmed exfiltration. However, the leak post provided contains only generic company background text with no specific details about data type, volume, or sensitivity. Without visibility into actual proof files or inventory of what was taken, severity is assessed as medium pending further disclosure details.Blacksuit claims to have breached H3co and published data. No specific details are provided in the leak post excerpt about what data was exfiltrated, the scope of encryption, or the nature of the stolen files.
What the group claims
Hostetler Buildings has grown a lot since we started in 1966. And we continue to grow. But there’s several things that have never changed. The root of our success has always been commitment to people and quality. Our focus is people-driven. And our purpose is consistent: To inspire others to grow and build with purpose, and to build value-added solutions.
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

