On March 21, 2025, the qilin ransomware group listed Cobb County, Georgia, on its leak site and began publishing more than 400,000 internal files totaling over 150 GB, including what the group described as a full Active Directory dump.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
Reported Details of the Breach
Public reporting indicates that Cobb County, a core part of the Atlanta metropolitan area, suffered a ransomware intrusion in which attackers exfiltrated large volumes of internal documents before encrypting systems. The qilin leak portal now hosts portions of the stolen data, and the group has stated that all data will be released if demands are not met. Available reporting describes the exposed material as sensitive county records, though the precise mix of personal information has not been independently verified by third parties. The incident follows the group’s typical pattern of dual extortion: first demanding ransom to prevent encryption, then threatening public release of stolen files.
Why This Matters for You and Your Family
When a county government like Cobb County is breached, the information at risk often includes records that name local residents, employees, vendors, and families. Tax documents, property records, licensing information, court filings, and employee payroll data can contain addresses, dates of birth, Social Security numbers, and other details that identity thieves need. If you or your family live or work in the affected area, your information may already be in the hands of criminals who specialize in turning stolen government data into targeted fraud, identity theft, or harassment. Children’s records held by schools or recreational programs administered by the county are also at elevated risk because family linkages make it easier for attackers to build complete profiles.
The Doxxing and Identity-Chain Risk
Leaked government files rarely stay isolated. A single exposed email address, username, or phone number can be chained with data from earlier breaches to map your entire digital footprint. Attackers then target linked accounts — including gaming platforms where children often reuse credentials or email addresses. Credential leaks like this one frequently cascade into account takeovers, doxxing, and further extortion. Once real names, addresses, and family relationships are public, the risk of physical harassment or financial fraud grows quickly. Continuous monitoring that traces these connections is one of the few practical defenses against rapidly expanding identity chains.