Ransomware victim disclosure
← All victimsGeneral Distributing
Claimed by Medusa · listed 6 months ago
Status timeline
- Listed
Nov 21, 2025
- Data leaked
At a glance
- Group
- Medusa
- Status
- Data leaked
- Country
- United States
- Sector
- Transportation/Logistics
- Listed on leak site
- Nov 21, 2025
- Records
- 168 Employees
About the victim
AI dossier — public-source company profileGeneral Distributing is a U.S.-based wholesale distribution and logistics company. Based on the sector classification, the company likely operates in the transportation or wholesale distribution space, moving goods to retailers or commercial customers. No further details are available from the leak post or a public site excerpt.
- Industry
- Wholesale Distribution / Transportation & Logistics
Attack summary
Severity: high — The disclosed status is 'data_published', meaning Medusa claims to have already released exfiltrated data. Even without confirmed specifics, a wholesale distributor likely holds business records, customer/supplier PII, financial data, and logistics information, warranting a high severity rating. Critical would require confirmed regulated data (e.g., medical or government) at scale, which cannot be verified here.The Medusa ransomware group claims an attack against General Distributing and has marked the disclosure status as data_published, indicating exfiltrated data has been released. The leak post content was not accessible due to a CAPTCHA challenge, so specific data categories and volumes cannot be confirmed.
What the group claims
General Distributing Co is a company that operates in the Convenience Stores, Gas Stations & Liquor Stores industry. It employs 100to249 people and has 25Mto50M of revenue. The company is headquartered in Salt Lake City, Utah. company is headquartered in 5350 W Amelia Earhart Drive, Salt Lake City, UT 84116, USA. 168 Employees
The leak post
captured from the group's siteHuman Verify Human verification required We need to ensure you're a real person. Please solve the captcha below to continue. Verify
Sources
Source
Indexed 6 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
