Lusamerica Foods Hit by Ransomware Attack, Exposing Sensitive Data
Lusamerica Foods, a family-owned seafood processor and distributor based in Morgan Hill, California, disclosed a ransomware attack on January 31, 2026, which was later reported to the California Attorney General on May 18, 2026.
The PLAY ransomware group claimed responsibility for the breach on February 13, 2026, posting on the Tor network that they had accessed sensitive data, including client documents, budget information, payroll records, IDs, tax details, and financial data. Lusamerica Foods did not specify which consumer information was exposed in its official notification.
As of May 19, 2026, the total number of affected individuals across the U.S. remains undisclosed.
In response, Lusamerica Foods established a confidential toll-free response line (available Monday–Friday, 8 a.m.–8 p.m. EST) for inquiries and is offering credit monitoring services to impacted individuals.
Source: https://www.claimdepot.com/data-breach/lusamerica-foods-2026
Lusamerica Foods Inc cybersecurity rating report: https://www.rankiteo.com/company/lusamerica-foods-inc
"id": "LUS1779316248",
"linkid": "lusamerica-foods-inc",
"type": "Ransomware",
"date": "1/2026",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Seafood processing and distribution',
'location': 'Morgan Hill, California, USA',
'name': 'Lusamerica Foods',
'type': 'Company'}],
'customer_advisories': 'Credit monitoring services offered to impacted '
'individuals',
'data_breach': {'data_exfiltration': 'Yes',
'personally_identifiable_information': 'Yes',
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Client documents',
'Budget information',
'Payroll records',
'IDs',
'Tax details',
'Financial data']},
'date_detected': '2026-01-31',
'date_publicly_disclosed': '2026-05-18',
'description': 'Lusamerica Foods, a family-owned seafood processor and '
'distributor, disclosed a ransomware attack that exposed '
'sensitive data, including client documents, budget '
'information, payroll records, IDs, tax details, and financial '
'data.',
'impact': {'data_compromised': 'Sensitive data, including client documents, '
'budget information, payroll records, IDs, tax '
'details, and financial data',
'identity_theft_risk': 'High'},
'investigation_status': 'Ongoing',
'ransomware': {'data_exfiltration': 'Yes', 'ransomware_strain': 'PLAY'},
'references': [{'date_accessed': '2026-05-18',
'source': 'California Attorney General Notification'},
{'date_accessed': '2026-02-13',
'source': 'PLAY ransomware group Tor network post'}],
'regulatory_compliance': {'regulatory_notifications': 'Reported to the '
'California Attorney '
'General'},
'response': {'communication_strategy': 'Established a confidential toll-free '
'response line and offered credit '
'monitoring services to impacted '
'individuals'},
'threat_actor': 'PLAY ransomware group',
'title': 'Lusamerica Foods Ransomware Attack',
'type': 'Ransomware'}