On June 24, 2024, New Zealand training provider Competenz appeared on the LockBit 3.0 ransomware leak site. The group claims to have exfiltrated a large volume of the organisation’s internal files during a ransomware attack, listing the company as a victim and publishing a sample of the allegedly stolen material.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch competenz.co.nz
Get alerted the next time competenz.co.nz files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about competenz.co.nz’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Primary Disclosure Details
The LockBit 3.0 leak page states that internal files were exfiltrated and threatens further publication unless a ransom is paid. The listing does not specify the exact number of records affected, nor does it provide a precise count of individuals whose data is contained in the archive. It does claim the stolen material includes a large quantity of passports, finance records, and banking documents. The disclosure indicates the data was taken from Competenz’s systems, which coordinate apprenticeships and on-the-job training programmes across multiple New Zealand industries. No independent verification of the full dataset has been published by the company at the time of writing.
Why This Matters for You and Your Family
If you or anyone in your household has completed an apprenticeship, traineeship, or vocational qualification managed by Competenz, your personal information may now sit in an attacker-controlled archive. Passports, banking details, and financial records are high-value targets because they allow criminals to open accounts, apply for credit, or impersonate you directly. Even when the leak-site listing does not quantify affected records, the nature of the data described means real-world exposure for apprentices, employers, and their families is likely. Once such information leaves a legitimate organisation’s control, it can circulate for years on underground markets.
Doxxing and Identity-Chain Risks
A single breach rarely stays isolated. Passport numbers and financial documents can be cross-referenced with emails, phone numbers, or usernames that appear in earlier leaks, rapidly building a complete identity profile. Attackers then use these chains to target gaming accounts, social-media profiles, or family members. Credential leaks of this type frequently cascade into account takeovers that expose children’s gaming handles, which in turn reveal home addresses or parent names. The result is persistent doxxing that can affect every member of a household long after the original breach is forgotten.