Ransomware Group The Gentlemen Claims Attack on Gerrity Stone
A Massachusetts stone fabrication company has been listed on a dark-web extortion site. The claim is unverified, but the group behind it has been active since at least June.

Key points
- A ransomware group calling itself The Gentlemen listed Gerrity Stone, a family-owned fabrication company in Wilmington, Massachusetts, on its dark-web extortion site on 2026-10-02.
- The listing was first observed by monitoring service Ransomware.live on 2026-10-03.
- Gerrity Stone has not publicly confirmed any incident, and the claim could not be independently verified at the time of publication.
- Manufacturing businesses are the most common target sector in The Gentlemen's claimed victim list.
- The group's post attributes specific figures to the company, but those details are written by the attackers and remain unverified.
A ransomware group called The Gentlemen claimed on 2026-10-02 that it had attacked Gerrity Stone, Inc., a family-owned natural stone business in Wilmington, Massachusetts. The listing appeared on the group's dark-web extortion site, a hidden website criminals use to name targets publicly and pressure them into paying. Ransomware.live, a monitoring service that tracks such listings, observed it the following day.
Gerrity Stone has not confirmed any breach and has issued no public statement. Listings like this are written by the attackers to pressure the target, and they're sometimes exaggerated or outright false.
How active is this group?
We've been tracking The Gentlemen since our first story on the group on 10 June 2026, and this is now the seventh time we've reported on their claimed victims. Manufacturing companies, the sector Gerrity Stone falls into, make up the most common target in the group's claimed list. That volume doesn't mean every claim is genuine. Ransomware groups routinely inflate their reach to build a reputation for lethality, making targets more likely to pay without a fight.
What does the listing actually say?
The group's post describes the company using detail drawn largely from publicly available business sources: its founding year, its Wilmington location, an estimated annual revenue figure, and details about its fabrication facility. None of that proves the group ever accessed internal systems. Attackers often scrape public sources to make a listing look credible before any payment negotiation begins. The post does not specify what category of data the group claims to hold.
Should you worry?
If you've shared personal details with Gerrity Stone, don't reuse the same password on other sites. A free password manager handles that easily. Watch for phishing emails, fake messages designed to trick you into clicking a link or handing over a password, that use this news as bait. Criminals sometimes send follow-up scam messages pretending to be the company or a breach-notification service. Treat any unexpected message asking you to verify your details as suspicious. Also be wary of phone calls claiming to offer breach compensation. That's a known scam pattern that follows high-profile ransomware listings.



