Ransomware victim disclosure
← All victimsDean Supply
Claimed by Akira · listed 2 months ago
Status timeline
- ListedMar 31, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Sector
- Consumer Services
- Listed on leak site
- Mar 31, 2026
About the victim
AI dossier — public-source company profileDean Supply is a US-based distributor specializing in a comprehensive range of restaurant supplies and equipment, including kitchenware, dining essentials, and janitorial products. The company serves the foodservice and hospitality sector. No further details on scale or headquarters are available from the leak post or a public site.
- Industry
- Restaurant Supplies & Equipment Distribution
Attack summary
Severity: high — The group claims exfiltration of ~15 GB of data including employee medical information (regulated PII/health data) alongside business-sensitive documents such as financials, NDAs, and contracts. The presence of medical data elevates severity toward critical, but without confirmation of scale of individuals affected it is rated high.The Akira ransomware group claims to have exfiltrated approximately 15 GB of corporate data from Dean Supply, including employee medical information, NDAs, financial records, contracts and agreements, and project documents, with publication of the data described as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee medical information
- Non-disclosure agreements (NDAs)
- Financial records
- Contracts and agreements
- Project documents
What the group claims
Dean Supply specializes in providing a comprehensive range of res taurant supplies and equipment, including kitchenware, dining ess entials, and janitorial products. We will upload 15gb of corporate data soon. Employee medical info rmation and other docs, NDAs, financials, projects, contracts and agreements, projects, etc.
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

