On February 14, 2026, the ransomware group Clop added aigbusiness.com to its public leak site, claiming that internal files had been exfiltrated from American International Group’s business unit during a ransomware attack. Anyone whose personal or employment records touched AIG’s systems could now have data circulating in criminal channels.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Aigbusiness.Com
Get alerted the next time Aigbusiness.Com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Aigbusiness.Com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting attributes the listing to Clop’s official leak portal, hosted on the dark web and mirrored by tracking services such as ransomware.live. The entry states that internal files were stolen and will be published if AIG does not meet the group’s demands. No exact victim count inside AIG has been disclosed, and the precise volume or sensitivity of the files remains unconfirmed by either party. The incident follows Clop’s established pattern of using double-extortion tactics: encrypting systems and threatening to release stolen data.
Why This Matters for You and Your Family
When a large insurer like AIG loses control of internal files, the ripple effects reach ordinary customers, policyholders, employees, and their households. Internal files can contain names, addresses, dates of birth, Social Security numbers, policy details, banking information, and correspondence that criminals later use for identity theft, fraudulent loan applications, or targeted scams. If your family has ever held an AIG policy, submitted a claim, or if you or a spouse worked with the company, your information may be among the records now at risk. The breach matters because stolen insurance data often sits undetected for months or years before it is sold or exploited.
The Doxxing and Identity-Chain Implications
Credential leaks and internal documents rarely stay isolated. A single exposed email address or policy number can link to your other online accounts, especially gaming platforms where children often reuse passwords or security questions. Once criminals connect these dots they can pivot from financial fraud to full doxxing—publishing home addresses, phone numbers, and family member names across forums. Children’s gaming accounts are particularly vulnerable because parental email addresses and shared phone numbers create direct pathways from corporate breaches to personal profiles.