Everest Ransomware Group Claims Massive Breach of McDonald’s India, Threatens Data Leak
The Everest ransomware group has alleged responsibility for a significant cyberattack on McDonald’s India, claiming to have exfiltrated 861 GB of sensitive data. The threat actors posted details of the breach on their dark web leak site on January 20, 2026, warning that the stolen information including internal documents and customer personal data would be publicly released if the company failed to respond by a set deadline.
This incident marks the second major breach targeting McDonald’s India in the past seven months. The ransomware group’s claims suggest a severe compromise of corporate and customer data, though McDonald’s has yet to publicly confirm the extent of the breach. The attack underscores the growing threat of ransomware operations targeting high-profile global brands, with cybercriminals increasingly leveraging stolen data as leverage for extortion.
Source: https://www.linkedin.com/feed/update/urn:li:activity:7419567275705462784
McDonald's Global Office in India cybersecurity rating report: https://www.rankiteo.com/company/mcdonald-s-global-office-in-india
"id": "MCD1768969764",
"linkid": "mcdonald-s-global-office-in-india",
"type": "Ransomware",
"date": "1/2026",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization’s existence"
{'affected_entities': [{'industry': 'Food & Beverage',
'location': 'India',
'name': 'McDonald’s India',
'type': 'Corporation'}],
'data_breach': {'data_exfiltration': 'Yes',
'personally_identifiable_information': 'Yes',
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Internal documents',
'Customer personal data']},
'date_publicly_disclosed': '2026-01-20',
'description': 'The Everest ransomware group has alleged responsibility for a '
'significant cyberattack on McDonald’s India, claiming to have '
'exfiltrated 861 GB of sensitive data. The threat actors '
'posted details of the breach on their dark web leak site on '
'January 20, 2026, warning that the stolen information '
'including internal documents and customer personal data would '
'be publicly released if the company failed to respond by a '
'set deadline. This incident marks the second major breach '
'targeting McDonald’s India in the past seven months.',
'impact': {'brand_reputation_impact': 'Severe',
'data_compromised': '861 GB of sensitive data',
'identity_theft_risk': 'High'},
'motivation': 'Extortion',
'ransomware': {'data_exfiltration': 'Yes'},
'references': [{'date_accessed': '2026-01-20',
'source': 'Everest ransomware group dark web leak site'}],
'threat_actor': 'Everest ransomware group',
'title': 'Everest Ransomware Group Claims Massive Breach of McDonald’s India',
'type': 'Ransomware'}