Last updated 1 month ago
MyPillow, a US-based retail company, has been listed on a ransomware gang's leak site, with the threat actors claiming to have stolen private data. The incident was publicly disclosed in June 2026 when the leak site appeared. No specific record count or affected user population has been confirmed, and the company denies the breach, calling it a politically motivated 'hit job.' The timeline of internal discovery is not stated.
The attack vector is ransomware, with the gang threatening to leak stolen data on the dark web unless demands are met. The initial access method and exploitation technique are not detailed in the article. The threat actor is a notorious ransomware gang, but their specific name is not provided. The compromised data is described as 'private data,' but no further specificity on data types is given.
No post-incident developments such as regulatory involvement, litigation, ransom payment, or remediation milestones are mentioned in the article.
Ransomware attack claimed by a ransomware gang
Sign in to join the discussion.
Company
Industry
Location
Disclosed
Records Affected
Attack Vector
Threat Actor
Continent
Country
Industry
Attack Vector
Threat Actor