2026 Nichirei — cold-chain cyberattack; RansomHouse leak-site claim; ops recovering (Jul)
Data compromised
Company: some affected servers contained personal information and it notified concerned individuals; has not confirmed whether data was stolen. RansomHouse claims confidential data, projects and documents—unverified actor marketing.
Technical writeup
Verified company incident with parallel RansomHouse claim — mid–late July 2026. Nichirei Corporation, Japan’s largest refrigerated logistics / frozen-food operator, disclosed a cyberattack that disrupted warehousing and shipments nationwide, including KFC Japan ingredient deliveries. Operations began gradually resuming about July 17; Nichirei and KFC said restaurants/shipments were returning to normal the week of July 22. The company said some affected servers held personal information and that it notified concerned individuals, while continuing investigation with an outside firm and cooperating with police; it has not publicly attributed the attack or confirmed exfiltration volume. Late July 22, RansomHouse posted Nichirei on its leak site claiming responsibility and threatening release of “confidential data, projects and documents.” BreachHistory indexes recordsAffected 0 pending an attested PII headcount.
Root cause
Cyberattack targeting Nichirei servers disrupted logistics; RansomHouse listed the company on its leak site claiming stolen confidential data (company investigating, has not publicly attributed)
References
- https://www.securityweek.com/cyberattack-disrupts-operations-of-japanese-frozen-food-giant-nichirei/
- https://therecord.media/cyberattack-japan-nichirei-logistics-impacts-kfc
- https://www3.nhk.or.jp/nhkworld/en/news/20260716_05/
- https://therecord.media/nichirei-japan-food-logistics-cyberattack-recovery
- https://www.japantimes.co.jp/business/2026/07/22/companies/nichirei-cyberattack-ransomhouse/
- https://x.com/DarkWebInformer/status/2079629367290790130