DRM Arby's, a company operating 73 Arby's Restaurants across four states, was reportedly targeted by the Cactus ransomware group on April 17, 2024. The ransomware group claims to have accessed various types of sensitive data, including accounting and payroll documents, personal identifying information, HR records, contracts, corporate correspondence, and personal folders of employees and executive managers.
While the ransomware group claims data exposure, the exact number of affected individuals and specific data types like SSN, medical, or financial information have not been publicly confirmed. Official statements from DRM Arby's, regulator notifications, or any related litigation are currently not available.
Details surrounding this incident can emerge later, and notices to affected individuals may be delayed.