Ransomware victim disclosure
← All victimsJC Sales
Claimed by Akira · listed 5 hours ago
Status timeline
- ListedAug 21, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Sector
- Retail & E-Commerce
- Listed on leak site
- Aug 21, 2026
About the victim
AI dossier — public-source company profileJC Sales is a full-service wholesaler based in Los Angeles, California, specializing in health and beauty items, food and beverages, general merchandise, and seasonal items for retail distribution.
- Industry
- Wholesale Distribution & Retail
- Address
- Los Angeles, California
Attack summary
Severity: high — Confirmed exfiltration of sensitive data at scale (206 GB) including PII (passports, driver's licenses, addresses, phone numbers) and confidential business information (financials, contracts, client data). This poses significant risk to both employees and business operations.The Akira group claims to have exfiltrated approximately 206 GB of corporate data, including detailed personal employee information, financial records, contracts, client data, and NDAs.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal information (passports, driver's licenses)
- Employee contact details and addresses
- Confidential financial records
- Contracts and agreements
- Client information
- NDAs and legal documents
What the group claims
JC Sales is a leading full-service wholesaler based in Los Angeles, California, specializing in a vast array of wholesale products including health and beauty items, food and beverages, gene ral merchandise, and seasonal items. We will upload 206gb of corporate data soon. Detailed personal employee information (passports, DLs, addresses, phones, contacts), confidential financials, contracts and agreements, client i nformation, NDAs and so on.
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

