Ransomware victim disclosure
← All victimsMakivik
Claimed by Play · listed 4 months ago
Status timeline
- ListedFeb 11, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileMakivik Corporation is an indigenous political organization representing the Inuit of Nunavik, Quebec, Canada, since 1978. It was established to protect the rights, interests, and financial compensation of Nunavik Inuit under the 1975 James Bay and Northern Quebec Agreement and the 2008 Nunavik Inuit Land Claim Agreement. Makivik operates subsidiary companies including Air Inuit, and administers social, cultural, economic, and land programs across Nunavik communities.
- Industry
- Indigenous Political & Economic Development Organization
- Address
- Nunavik, Québec, Canada
- Founded
- 1978
Attack summary
Severity: critical — Makivik represents and holds sensitive data on Inuit beneficiaries including financial compensation records, land claim administration, social program data, and PII of an indigenous population at scale. The organization itself confirmed a cybersecurity event, and the Play group has published data, indicating confirmed exfiltration of regulated and sensitive records affecting a vulnerable indigenous community.The Play ransomware group claims to have attacked Makivik Corporation, with data published as of the disclosed status. Makivik's own press release dated May 6, 2026 confirms a cybersecurity event discovered on February 8, 2026, indicating confirmed data exposure of organizational data.
Data the group says was taken
AI dossier — extracted from the leak post- Corporate records
- Financial data
- Beneficiary/membership records
- Land administration records
- Employee/HR data
- Legal and political documents
- Subsidiary company data
What the group claims
Canada
The leak post
captured from the group's site| Play ransomware HAS NEVER PROVIDED AND DOES NOT PROVIDE THE RaaS, read the FAQ page.WE NEVER WRITES FIRST, IF SOMEONE WRITES TO YOU, THEY ARE SCAMMERS.we'll buy your access: 75tkvxemb6zpyk3fbl3mwm32jklc2sdjacb3kazrioamopbfn2w2z5qd.onionIf we have not responded to you by email within 12 hours, please leave your contact information on the website in the contact tab. | | --- | | EMA Engineering & Consulting👁️ views: 321added: 2026-05-07publication date: 2026-05-11 | Accessoires Outillage Ltee👁️ views: 280added: 2026-05-07publication date: 2026-05-11 | K & E Distributing👁️ views: 282added: 2026-05-07publication date: 2026-05-11 | | Sokolin👁️ views: 7261 | Barnes Solicitors LLP👁️ views: 7182 | Witt UK Group👁️ views: 8181 | | Valley Plating Inc👁️ views: 8198 | Dock Pros👁️ views: 8179 | Kivells👁️ views: 8149 | | Specflue👁️ views: 8136 | Weber Kracht & Chellew👁️ views: 8180 | Lucky Look👁️ views: 8285 |
Sources
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

