Macomb Group
bd_c0404522ca0f024c · schema v1 · pii pii-v1
Full breach record for Macomb Group →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Black Basta on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Welcome to The Macomb Group! We’re proud to be a leading wholesale distributor of pipe, valves and fittings for the Midwest region and beyond.Founded in 1977 and acquired by the current owners in 1991, The Macomb Group has differentiated itself from competitors by continually expanding our operations to provide unbeatable specialty services, a huge inventory, energy-efficient solutions, and exceptional customer service.We pride ourselves on being a family and friend oriented business which started long before 1991. Our CEO Bill McGivern and Executive Vice President Keith Schatko first met while playing little league together. Years later, as fate would have it, both Schatko and McGivern were working at what was then known as Macomb Pipe & Supply to help pay for college tuition. Although they knew they wanted to become business owners, they also knew how important warehouse operations were to the success of a company so they learned all they could. They started by sweeping floors, packing orders, familiarizing themselves with the products and working the sales counter. When the time came, McGivern and Schatko, together with then-partner Doug Howe purchased the company.SITE: https://www.macombgroup.com Address 6600 East 15 Mile RoadSterling Heights, MI 48312Phone: (586) 274-4100Fax: ([REDACTED-PHONE]
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Mar 8, 2023
Claim posted
—
No filing yet · watching
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
No regulatory filing corroborates this yet — it is the attacker's own assertion. Watch this entity to be notified the moment a filing corroborates or contradicts it.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.