Almeida Law Group is investigating a data breach at Ingram Content Group. ShinyHunters, a ransomware and extortion group, claimed responsibility for the attack on July 1, 2026, alleging that ransom negotiations with the company had failed. If you were affected, contact Almeida Law Group.
About Ingram Content Group
Ingram Content Group, Inc. is a major U.S. provider of book distribution, print-on-demand publishing services, and digital content logistics, serving publishers, booksellers, libraries, and educational institutions worldwide.
What Happened?
On July 1, 2026, the ransomware and extortion group ShinyHunters listed Ingram Content Group on its dark web leak site, claiming the company failed to reach a ransom agreement despite what the group described as “incredible patience” and multiple opportunities to negotiate. The initial leak site posting did not specify the volume or categories of data allegedly stolen.
On July 7, 2026, DataBreach.com published a searchable database indexing information reportedly compromised in the incident, identifying 80,190 rows of data containing Social Security numbers, email addresses, phone numbers, names, and physical addresses. As of this writing, Ingram Content Group has not publicly confirmed the breach, and the scope and authenticity of the claimed dataset have not been independently verified.
ShinyHunters is a financially motivated data-theft and extortion group active since 2019–2020, previously linked to breaches at organizations including Ticketmaster, PowerSchool, and Instructure/Canvas LMS. The group’s typical model involves gaining unauthorized access, exfiltrating data, demanding a ransom, and threatening to publish the data if payment is refused.
Key Facts at a Glance
- Company or Organization: Ingram Content Group, Inc.
- Industry: Book Distribution, Publishing Services, and Digital Content Logistics
- Threat Actor: ShinyHunters
- Incident type: Alleged ransomware/extortion attack resulting in claimed data theft
- Date claimed by threat actor: July 1, 2026
- Data indexed by third-party researchers: July 7, 2026
- Records reportedly affected: 80,190 rows
- Data types reportedly involved: Social Security numbers, email addresses, phone numbers, names, and addresses
- Company confirmation: Not yet confirmed by Ingram Content Group
- Source: DeXpose – ShinyHunters Target Ingram Content Group in Ransomware Attack; ClassAction.org – Ingram Content Group Data Breach Investigation; BreachNews – ShinyHunters Adds Ingram Content Group, Fluke to Leak Site
What Should You Do?
If you are a current or former employee, author, publisher, or other individual affiliated with Ingram Content Group, watch for any official notice from the company regarding this incident and review it carefully for guidance on identity theft protection or credit monitoring services. Given the reported involvement of Social Security numbers, consider placing a fraud alert or credit freeze with all three major credit bureaus — Equifax, Experian, and TransUnion — and monitor your credit reports at AnnualCreditReport.com. Watch your financial accounts and email for unfamiliar activity or phishing attempts, and report suspected identity theft at IdentityTheft.gov.
Your Legal Rights
If your personal information may have been involved in this incident, you may have legal rights depending on the facts as they develop and the law in your state. Almeida Law Group represents consumers in data breach and privacy litigation and can help you evaluate whether you may have a claim. Contact us at (708) 529-5418 or through our contact page for a free case evaluation.