In February 2026, the Termite ransomware group claimed the Birmingham Museum of Art as a victim, with the attack reportedly occurring on February 24, 2026. This claim was discovered on ransomware.live on February 25, 2026, and included a leak screenshot and DNS records. However, ransomware.live explicitly states it only indexes publicly posted information and does not access or distribute stolen data.
As of now, no confirmed data breach details are available from official sources. The number of affected individuals, the types of data exposed (such as SSN, medical, or financial data), and whether data exfiltration actually occurred have not been publicly confirmed by the Birmingham Museum of Art. No official notifications, letters, or statements from the museum, nor any State Attorney General filings, have been found.
While the ransomware group has made a claim, the full scope of this potential data breach at the Birmingham Museum of Art remains unclear, and further details may emerge later. Ongoing monitoring of ransomware sites and official channels will be necessary for updates.