On December 16, 2024, Greek IT services firm Cognity (cognity.gr) appeared on the leak site operated by the fog ransomware group. The listing states that attackers exfiltrated 36 GB of internal files during a ransomware incident. The notification does not specify the exact number of people affected or list the precise data types contained in the archive.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Cognity (cognity.gr)
Get alerted the next time Cognity (cognity.gr) files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Cognity (cognity.gr)’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Primary Disclosure Details
The fog leak site entry states that Cognity was hit by a ransomware deployment and that the threat actors successfully removed 36 GB of internal company files. No sample data has been published yet, and the listing does not quantify how many customer or employee records may be inside the archive. The disclosure indicates the data was taken prior to the public posting on December 16, 2024, but supplies no earlier intrusion date. As with most ransomware leak-site postings, the exact contents remain unknown to the public until the group decides to release them or the victim negotiates.
Why This Matters for You and Your Family
When a company that provides IT services and digital transformation support suffers a breach, the ripple effects often reach ordinary customers and their households. If you or your family have done business with Cognity, used their hosted platforms, or had personal information processed by one of their clients, your details could be sitting in that 36 GB archive. Even when record counts are not published, the exposure of internal files frequently includes contracts, invoices, employee directories, and customer spreadsheets that contain names, addresses, phone numbers, email accounts, and sometimes national ID or tax identifiers. Once those files surface, they become raw material for identity thieves, phishing campaigns, and long-term fraud against you and your relatives.
Doxxing and Identity-Chain Risks
Internal files from an IT services provider commonly link corporate identities to personal ones. A single spreadsheet can tie an employee’s work email to their home address, spouse’s name, and children’s school details. Attackers then cross-reference those fragments with other breaches to build complete identity chains. The same credentials or personal markers leaked here can be used to seize email accounts, reset banking logins, or impersonate family members. Gaming accounts belonging to children are especially vulnerable because parents often reuse passwords or recovery email addresses that appear in business documents. These chains turn a corporate ransomware incident into direct personal doxxing and account takeover risk for households.