Ransomware victim disclosure
← All victimsCircle U Foods
Claimed by akira · listed 10 days ago
Status timeline
- Listed
May 11, 2026
- Data leaked
At a glance
- Group
- akira
- Status
- Data leaked
- Country
- United States
- Listed on leak site
- May 11, 2026
About the victim
AI dossier — public-source company profileCircle U Foods, Inc. is a manufacturer of custom seasonings and flavored food grade oils based in Fort Worth, Texas. The company serves domestic and international restaurant chains, distributors, and food manufacturers. Its customer base spans both B2B foodservice and industrial food production sectors.
- Industry
- Custom Seasonings & Flavored Food Grade Oils Manufacturing
- Address
- Fort Worth, TX, United States
Attack summary
Severity: critical — Confirmed exfiltration includes regulated PII at scale (SSNs, passport numbers) for employees, alongside financial and payment data, meeting the threshold for critical severity under regulated/sensitive data exposure.Akira claims to have exfiltrated approximately 13 GB of corporate data from Circle U Foods, including employee PII (SSNs, passport numbers, contact details), client data, financial records, payment details, project documentation, and NDAs, with publication described as imminent.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal information (names, phone numbers, addresses, emails)
- Employee SSNs
- Employee passport numbers
- Client data
- Financial records
- Payment details
- Project drawings and specifications
- NDAs
What the group claims
Circle U Foods, Inc. is a manufacturer of custom seasonings and flavored food grade oils based in Fort Worth, TX. The company serves domestic and international restaurant chains, distributor s, and food manufacturers. We will upload 13gb of corporate data soon. Employee personal information (phones, addresses, e mails, SSNs, passports numbers and so on), client data, financials, payment details, projects i nformation (drawings, specifications, etc), NDAs and so on.
Source
Indexed 10 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
