On January 13, 2026, the Akira ransomware group listed CONCEPTNET GmbH on its leak site and announced plans to publish 50GB of the German media agency’s corporate data, including employee passports, IDs, addresses, emails, financial records, projects, and NDAs.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Conceptnet
Get alerted the next time Conceptnet files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Conceptnet’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates CONCEPTNET, a Regensburg-based agency founded in 1996 that creates cross-media campaigns for web, app, print, and events, was hit by a ransomware attack. The Akira group claims it has already exfiltrated internal files and will soon upload them. No exact number of affected individuals has been confirmed, but the exposed material includes personal information that could directly identify employees and their families. Available reporting describes the data as a mix of corporate documents and sensitive employee records rather than customer databases.
Why This Matters for You and Your Family
When a company that handles creative projects, contracts, and internal communications is breached, the information stolen often reaches far beyond the office. Employee passports, IDs, and home addresses can be used to open accounts in your name, file fraudulent tax returns, or target your family with phishing emails that look legitimate because they reference real projects or NDAs. If you or a family member works at a firm like CONCEPTNET, or your data was stored in the compromised systems, the breach creates a window of months or years during which criminals can quietly exploit the information before you notice.
January 13, 2026 marks the public confirmation; the actual theft likely happened earlier. The longer the data sits on a leak site, the more copies circulate among criminal networks.