On October 27, 2023, the Dutch business-support organization cozwolle.nl appeared on the leak site operated by the Black Basta ransomware group. The listing states that internal files were exfiltrated during a ransomware attack. Anyone whose personal or business information passed through Co Zwolle’s systems — tenants, event attendees, suppliers, or partners — may now be exposed.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch cozwolle.nl
Get alerted the next time cozwolle.nl files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about cozwolle.nl’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Details from the Leak-Site Listing
The Black Basta leak page for cozwolle.nl states that the company suffered a ransomware incident in which attackers successfully copied internal files before encrypting systems. The disclosure does not quantify the number of records affected, list specific data types, or reveal the ransom demand. It simply states that data was stolen and will be published if the victim does not negotiate. The primary source, accessed via the onion link hosted on ransomware.live, remains the sole official public record of the breach at the time of writing.
Why This Matters for You and Your Family
Co Zwolle manages rentals, events, restaurants, and support services for creative professionals. If you have ever rented space, attended a meeting, supplied goods, or received invoices from them, your name, address, email, phone number, or payment details could sit inside the stolen files. Even a single leaked email or phone number can serve as the starting point for identity theft, phishing, or account takeover attempts against you or members of your household.
The Doxxing and Identity-Chain Risk
Ransomware groups rarely stop at one dataset. Once internal files leave the victim’s network they often circulate in underground markets, allowing other criminals to combine them with information from previous breaches. A tenant’s email paired with a home address from one file, a password hint from another, and a child’s gaming username from a third breach quickly forms a complete identity chain. This is exactly how doxxing escalates from nuisance to targeted harassment or financial fraud. DoxxScan by GalaxyWarden continuously monitors across 13.1B+ breach records and 100+ platforms, using AI-powered identity-chain mapping to reveal these connections before criminals exploit them. It is also effective for protecting gaming accounts — yours or your children’s — because credential leaks like this one frequently cascade into account takeovers that expose family photos, chat logs, and real-world addresses.