Ransomware victim disclosure
← All victimsWildman Business Group
listed as wildmanbg.com · Claimed by BrainCipher · listed 3 hours ago
Status timeline
- ListedSep 29, 2026
- Data leakeddate unknown
At a glance
- Group
- BrainCipher
- Status
- Data leaked
- Country
- Bulgaria
- Listed on leak site
- Sep 29, 2026
About the victim
AI dossier — public-source company profileWildman Business Group is a workplace solutions supplier based in Warsaw, Indiana, founded in 1952. They provide customized programs including uniform rental, facility cleaning, first aid/safety solutions, apparel and promotional items, and restroom/floor care services to clients across automotive, industrial, manufacturing, food & beverage, retail, and office sectors.
- Industry
- Uniform Rental & Facility Services
- Address
- Warsaw, IN
- Founded
- 1952
Attack summary
Severity: critical — Confirmed exfiltration of regulated sensitive data at scale, including PII (SSNs, medical records, W-2 forms), financial records (bank reconciliations, treasury), and client data with pricing information. The volume (350k+ files, 80 GB) and sensitive nature of HR and financial data constitute a critical breach.BrainCipher claims to have exfiltrated over 350,000 files totaling 80 GB of data. The group states the contents include HR records (W-2 forms, Social Security Numbers, benefits, medical, disciplinary records), financial data (bank reconciliations, treasury, accounting backups), client contracts with pricing, invoices, billing records, warehouse data, commission records, purchasing information, and operational reports.
Data the group says was taken
AI dossier — extracted from the leak post- W-2 forms and Social Security Numbers
- Employee benefits and medical records
- Disciplinary records
- Bank reconciliations
- Treasury records
- Accounting backups
- Client contracts and pricing
- Invoices and billing records
- Warehouse records
- Commission records
- Purchasing records
- Operational reports and templates
Original description
AI-summarised, not from the leak postN/A
The leak post
captured from the group's siteMore than 350k files with a total size of over 80 GB. Contents: HR files (W-2/SSN/benefits/medical/disciplinary), bank reconciliations, treasury, accounting .bak files, Key Data, client contracts with pricing; invoices, billing, warehouse records, commissions, purchasing, operational reports and templates. If you think you are here by mistake, please contact us at [email protected] ⏳ Deadline: October 7, 2026 at 13:00
Sources
Source
Indexed 3 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

