Monterey Mushrooms, Inc.
bd_e3ec4b90d017b69f · schema v1 · pii pii-v1
Full breach record for Monterey Mushrooms, Inc. →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Payoutsking on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Monterey Mushrooms, founded in 1971 and headquartered in Watsonville, California, is a multinational company that cultivates, packs, and distributes fresh market mushrooms for retail, foodservice, and ingredient markets. Its product portfolio includes various types of mushrooms, such as white, brown, specialty, and organic mushrooms.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Aug 8, 2025
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Ransomware claims (2)
- Leak Siteinc_ransombd_79bbf0052cee619f2025-09-04 · +28dVerified by operator
- Leak Siteinc_ransombd_13df222688d571e32025-08-07 · +1dVerified by operator
Regulatory filings (7) · sorted by filing gap
- Illinois State AGbd_ed229c237054b3b92025-09-01 · +24dCandidate
- New Hampshire State AGbd_17acbf087b19cf7a2025-09-18 · +41dVerified
- Massachusetts State AGbd_2b3c00c52a65a78e2025-09-18 · +41dVerified
- Maine State AGbd_40da3695a52af1b92025-09-18 · +41dVerified
Show 3 more filings ↓Show fewer ↑up to 42d gap
- California State AGbd_79b16cd7b701d24c2025-09-18 · +41dVerified
- Indiana State AGbd_fdc024fa12b201d02025-09-18 · +41dVerified
- Texas State AGbd_9adbd9b1d57a950c2025-09-19 · +42dVerified
Filing propagation · 8 filings · 7 states
View merged incident ↗Pattern: first filing Aug 8, last Sep 19 (TX) — a 42-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
payoutsking
According to ransomware.live, PayoutsKing is an active ransomware group observed through at least 2026 that has claimed attacks against a wide range of industries internationally — including Del Monte Foods and V. FRAAS — across the US, UK, Germany, and Ireland using standard double-extortion tactics.