On June 29, 2025, CMY Fiduciary Services appeared on the leak site of the ransomware group Incransom. The Northern California firm, which handles fiduciary, estate, and financial matters for Sacramento Valley families, is claimed to have had internal files exfiltrated after a ransomware attack. Public reporting indicates that client-related documents and employee information may have been among the stolen data, although the exact number of affected individuals remains unknown.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch carolynmyoung.com
Get alerted the next time carolynmyoung.com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about carolynmyoung.com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Reported Details of the Breach
CMY Fiduciary Services employs 25 people and generates roughly $5 million in annual revenue. The company has operated for more than 30 years and recently moved its office to Fair Oaks in Sacramento. According to the Incransom leak site, the attackers extracted internal files during the incident. No specific deadline for ransom payment has been publicly confirmed in available reporting, but the listing itself signals that negotiations either failed or never occurred.
Internal files were allegedly exfiltrated, and the data types most likely include documents that contain names, addresses, financial details, Social Security numbers, and other personal information that families entrust to a fiduciary services provider. Industry research from sources such as DoxxScan™ continuous monitoring indicates that finance-sector breaches of this nature frequently expose exactly these records.
Why This Matters for You and Your Family
When a company that manages wills, trusts, estates, or financial powers of attorney is breached, the information stolen is deeply personal. A single leaked document can contain your full name, date of birth, Social Security number, bank account numbers, and the names and contact details of your children or other dependents. Once that data reaches the open web, it can be sold quietly or posted publicly, giving identity thieves and harassers a roadmap to your life.