On November 21, 2025, Canadian educational publisher Emond Publishing appeared on the leak site of the dragonforce ransomware group. The company, which produces textbooks, exam preparation materials, and resources on subjects including criminal law and immigration law for law students and legal professionals, is claimed to have had internal files exfiltrated during a ransomware attack. While the exact number of people whose information may have been exposed remains unknown, anyone who purchased materials, registered for accounts, or corresponded with the company could be affected.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Emond Publishing
Get alerted the next time Emond Publishing files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Emond Publishing’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates that dragonforce listed Emond Publishing on its leak site and claimed to have stolen internal files. The posting appeared on November 21, 2025. Available reporting describes the data as internal documents rather than a structured database of customer records, but ransomware incidents of this type frequently include contracts, invoices, student or professional contact lists, and email correspondence. No confirmed total of records or specific victim count has been released by the company or the attackers.
Why This Matters for You and Your Family
If your name, email address, phone number, mailing address, or payment details ever reached Emond Publishing, this claimed breach puts that information in the hands of criminals. Students preparing for law school, practicing lawyers, paralegals, and immigration consultants are common customers. A single exposed email or phone number can lead to targeted phishing, identity theft attempts, or unwanted solicitations. For families, the risk extends beyond the primary account holder: children’s names linked to parental emails, shared family addresses, or joint purchases can all surface in the same dataset.
Credential leaks like this one often cascade into account takeovers elsewhere. Once attackers obtain an email and any associated password hints or old credentials, they test them across banking, government, and social media services.