A ransomware group claimed in July 2026 to have targeted Caterpillar and exfiltrated "internal files," with one listing broadly mentioning contact/identity PII. However, no official breach notice, state Attorney General filing, or company statement has been found to confirm the incident or provide details on affected individuals or data types. The information available is primarily from third-party ransomware-leak trackers.
The number of affected individuals remains undisclosed, and the presence of SSN, medical, or financial data has not been confirmed. The available material does not indicate that this was a vendor or third-party breach.
Details surrounding this alleged incident remain unconfirmed, and further information may emerge.