Ransomware victim disclosure
← All victimsWorrell Corporation
listed as Worrell · Claimed by Akira · listed 9 hours ago
Status timeline
- ListedSep 4, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Listed on leak site
- Sep 4, 2026
About the victim
AI dossier — public-source company profileWorrell Corporation is a family-owned business based in Indianapolis specializing in promotional products, marketing, and print services. They provide clients with promotional item sourcing, tailored marketing strategies, and webstore solutions.
- Industry
- Promotional Products, Marketing & Print Services
- Address
- Indianapolis, Indiana, USA
Attack summary
Severity: high — Confirmed exfiltration of significant business data including employee and client PII, financial records, and commercial agreements at substantial scale (45 GB); data publication announced.Akira claims to have exfiltrated approximately 45 GB of corporate data including employee and client information, contacts, agreements, financials, and project files. The group has announced intention to publish the stolen data.
Data the group says was taken
AI dossier — extracted from the leak post- employee information
- client information
- contact details
- client agreements
- financial records
- project files
What the group claims
Worrell Corporation is a family-owned business based in Indianapolis that specializes in promot ional products, marketing, and print services. They assist clients in finding impactful promoti onal items while offering tailored marketing strategies and webstore solutions. We will upload 45gb of corporate data soon. Employee and client information, contacts and agree ments, financials, projects and so on.
Source
Indexed 9 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

