Ransomware victim disclosure
← All victimsCity of Modesto, CA
Claimed by Snatch · listed 3 years ago
Status timeline
- ListedMar 27, 2023
- Data leakeddate unknown
At a glance
- Group
- Snatch
- Status
- Data leaked
- Country
- United States
- Sector
- Government
- Listed on leak site
- Mar 27, 2023
About the victim
AI dossier — public-source company profileThe City of Modesto is the municipal government of Modesto, California, serving as the official local government authority for one of the largest cities in the San Joaquin Valley. It provides a broad range of public services including fire protection, police, utilities, permitting, community development, and public works. The city operates under a council-manager form of government and serves a population of approximately 220,000 residents.
- Industry
- Municipal Government
- Address
- Modesto, CA, United States
- Employees
- 1000-5000
Attack summary
Severity: critical — The victim is a municipal government entity with data published by the threat actor. Government systems typically contain large volumes of regulated PII (resident records, utility billing, police reports, employee data), and confirmed data publication against a public sector target constitutes a critical-severity disclosure.The Snatch ransomware group claims to have attacked the City of Modesto and has disclosed the status as data_published, indicating exfiltration and publication of data. The specific nature and volume of the published data is not detailed in the truncated leak post.
Data the group says was taken
AI dossier — extracted from the leak post- Government administrative records
- Employee data
- Resident/citizen PII
- Financial records
- Internal communications
- Utility billing data
- Police/public safety records
What the group claims
Proudly serving, protecting and partnering with our community for a safer Modesto.
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

