All ransomware incidents
Ransomware group thegentlemen hits Cedars Foods
Cedars Foods — a agriculture and food production target operating in US has been listed by the thegentlemen ransomware group on 2026-09-14. The information below reflects what the threat actor has publicly claimed on their leak site; the details have not been independently verified.
Incident Report
| Target Organization | Cedars Foods |
|---|---|
| Threat Group | thegentlemen |
| Summary | cedarsfoods.com zoominfo.com/c/cedars-mediterranean-foods-inc/22189641 Cedars Foods America's #1 hummus & falafel brand — a 1981-founded Dearborn, Michigan family company (the Hamady family, in the heart of the Arab-American community) that made Mediterranean food mainstream in the US. Products: hummus, falafel, baba ghanoush, taboule, dolmas, pita chips, kibbeh, tzatziki, toum — in retail formats (8–10 oz) and foodservice 10-lb boxes for US Foods, Sysco and Shamrock; clients: Costco, Kroger, Walmart, Whole Foods, Meijer — national reach from a Dearborn plant with ~110–140 staff |
| Date of Breach | 2026-09-14 |
| Discovery Date | 2026-09-15 |
| Region | US |
| Target Domain | cedarsfoods.com |
| Business Sector | Agriculture and Food Production |
| Severity | MEDIUM |
Claim by thegentlemen
cedarsfoods.com zoominfo.com/c/cedars-mediterranean-foods-inc/22189641 Cedars Foods America's #1 hummus & falafel brand — a 1981-founded Dearborn, Michigan family company (the Hamady family, in the heart of the Arab-American community) that made Mediterranean food mainstream in the US. Products: hummus, falafel, baba ghanoush, taboule, dolmas, pita chips, kibbeh, tzatziki, toum — in retail formats (8–10 oz) and foodservice 10-lb boxes for US Foods, Sysco and Shamrock; clients: Costco, Kroger, Walmart, Whole Foods, Meijer — national reach from a Dearborn plant with ~110–140 staff
Posted by the thegentlemen threat actor on its public leak site. This is the group's own statement and has not been independently verified by HackerFeeds.
Disclaimer
HackerFeeds does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.

