On December 22, 2022, CAP Carpet & Flooring appeared on the leak site operated by the Clop ransomware group. The company, which sells hardwood, waterproof tile, plank floors, ceramic tile, and custom area rugs, was listed after suffering a ransomware attack in which internal files were allegedly exfiltrated. The exact number of people whose information may have been exposed remains unknown, and the leak-site listing does not detail the specific documents or data types taken.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 582 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
Details from the Clop Listing
The primary disclosure on the Clop leak site states that CAP Carpet & Flooring was compromised in a ransomware incident and that attackers successfully removed internal files before encryption. No sample data was published at the time of the initial listing, and the disclosure does not quantify affected records or name the precise systems accessed. Public mirrors of the leak site, including ransomware.live, continue to carry the entry at the onion address provided. The incident follows Clop’s established pattern of using the public listing as leverage to pressure victims into payment negotiations.
Why This Matters for You and Your Family
When a local business like a carpet and flooring retailer is breached, customers, suppliers, and employees can all be placed at risk. If you have ever purchased flooring, provided personal details for a quote, paid by check, or applied for credit with CAP Carpet & Flooring, your name, address, phone number, email, or payment information may have been inside the stolen files. Even when exact record counts are not published, the exposure of internal documents often includes spreadsheets that link customer identities to addresses, order histories, and contact details. For families, this means your home address tied to purchase records can surface in unexpected places, increasing risks ranging from targeted phishing to physical mail scams.
Doxxing and Identity-Chain Implications
Stolen internal files frequently contain more than names and addresses. They can include email addresses, phone numbers, account login details, or references to other online services. Attackers and data resellers combine these fragments with information from previous breaches to build detailed identity chains. A single leaked customer record can link your work email to a personal phone number, then to a child’s gaming username that shares the same household address. Once mapped, these chains enable doxxing, account takeovers, and persistent harassment. Credential leaks of this nature routinely cascade into gaming account compromises for both adults and children, exposing linked payment methods and private messages.