Ransomware victim disclosure
← All victimsFactory Five Racing Inc
listed as FactoryFive · Claimed by Metaencryptor · listed 17 hours ago
Status timeline
- ListedAug 23, 2026
- Data leakeddate unknown
At a glance
- Group
- Metaencryptor
- Status
- Data leaked
- Country
- United States
- Sector
- Manufacturing
- Listed on leak site
- Aug 23, 2026
About the victim
AI dossier — public-source company profileFactory Five Racing Inc manufactures high-performance kit cars (Cobra replicas, Mk5/Mk4 Roadsters, Type 65 Coupe, '33 Hot Rod, and XTF models) based in Wareham, Massachusetts. The company operates with approximately 90 employees and generates annual revenue of $5.5–6.5 million, with significant credit card processing volume (~$4.3M/yr).
- Industry
- Specialty Automotive Manufacturing & Kit Cars
- Address
- 9 Tow Road, Wareham, MA 02571-1086
- Employees
- 90
Attack summary
Severity: critical — Confirmed exfiltration of sensitive regulated data including PII at scale (CRM contacts), financial/banking records, tax documentation, insurance data, active litigation files with witness testimony, and PCI DSS-regulated payment processing information. Multiple regulatory frameworks implicated: PCI DSS ($4.3M processing), MA 201 CMR 17.00, GDPR, CCPA. Company undergoing active IRS and MA Sales Tax audits. Litigation exposure and reputational damage from case file disclosure.metaencryptor claims to have exfiltrated approximately 130 GB of data from Factory Five Racing, including correspondence, CRM records, ERP/pricing systems, CAD engineering files, banking statements, insurance policies, tax documentation, legal contracts, NDAs, and database backups. The group has published pricing configurator scripts and onboarding documents as proof.
Data the group says was taken
AI dossier — extracted from the leak post- email archives (PST)
- CRM contact data (GoldMine)
- ERP and pricing systems
- engineering CAD files (SolidWorks, Rhino)
- banking statements
- insurance policies
- tax documentation
- legal contracts and NDAs
- litigation case files and correspondence
- database backups
The group's post references roughly 7 proof files.
What the group claims
Factory Five Racing Inc — kit-car manufacturer (Cobra replicas, GTM, Type 65 Coupe, 33 Hot Rod). 9 Tow Road, Wareham MA 02571-1086. ~90 employees, 158 endpoints. Revenue $5.5-6.5M/yr (credit card processing ~$4.3M, avg ticket $1245). Exfiltrated data categories (~130GB): correspondence (PST archives), CRM contacts (GoldMine), ERP/pricing, engineering CAD (SolidWorks/Rhino), banking statements, insurance policies, tax documentation, legal contracts/NDAs, database backups. Includes detailed materials on several ongoing lawsuits — parties, witnesses, testimonies, and related case files, alongside private correspondence. Risk zones: PCI DSS (card processing $4.3M/yr), MA 201 CMR 17.00 (Massachusetts personal data protection), GDPR (EU clients), CCPA (California clients), active IRS audit, active MA Sales Tax audit, FTC Safeguards Rule. Reputational: customer warranties, partner contracts (SEMA supplier), licenses, litigation exposure. CEO: David T. Smith.
The leak post
captured from the group's siteFactory Five Racing Inc — kit-car manufacturer (Cobra replicas, GTM, Type 65 Coupe, 33 Hot Rod). 9 Tow Road, Wareham MA 02571-1086. ~90 employees, 158 endpoints. Revenue $5.5-6.5M/yr (credit card processing ~$4.3M, avg ticket $1245). Exfiltrated data categories (~130GB): correspondence (PST archives), CRM contacts (GoldMine), ERP/pricing, engineering CAD (SolidWorks/Rhino), banking statements, insurance policies, tax documentation, legal contracts/NDAs, database backups. Includes detailed materials on several ongoing lawsuits — parties, witnesses, testimonies, and related case files, alongside private correspondence. Risk zones: PCI DSS (card processing $4.3M/yr), MA 201 CMR 17.00 (Massachusetts personal data protection), GDPR (EU clients), CCPA (California clients), active IRS audit, active MA Sales Tax audit, FTC Safeguards Rule. Reputational: customer warranties, partner contracts (SEMA supplier), licenses, litigation exposure. CEO: David T. Smith. | [CONFIGURATOR PRICING SCRIPT - FFR - SRV2.xlsx](https://metacrpttdfpbm4qoxzcrqqgr6e6zafpazgxm72knmujw2mwvi34rwad.onion/0AFC:675a977f4d6b460ed9ccbbcb4d75117ae02209187bb0af2d7b01f0fab79e1ce4/0AFC:97deec99241a33e261d126ec80cd3137c5a…
Sources
Source
Indexed 17 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

