EnCom Polymers Listed by losttrust Ransomware Group
If you are a customer of EnCom Polymers, here’s what is being claimed, and what it would mean for you.
EnCom Polymers was established in October 1999, with a goal of servicing automotive companies in the Midwest and their Tier 1 and Tier 2 suppliers. Through our commitment to customer service, product quality, and new product development, EnCom Polymers has grown to serve a broad range of industries such as telecommunications, medical, electrical and electronic, material handling, and industrial.
— from Losttrust’s own leak-site posting. This is the group’s claim, quoted verbatim; it is not GalaxyWarden’s reporting and has not been independently verified.
Editor’s note: The claims described below originate from a ransomware group’s leak-site posting and have not been independently verified by GalaxyWarden. A listing of this kind is an assertion made by the group during an extortion attempt. It is not evidence that a breach occurred, and we report it as a claim rather than as a finding.
EnCom Polymers customer?
See what’s already exposed about you — free, 15sWe check your email against known public breach records and the sites that publish your address, then show you what to do about each one. We don’t hold this company’s data. No account, no card.
On September 26, 2023, EnCom Polymers appeared on the leak site operated by the losttrust ransomware group. The company, which supplies specialty polymers to automotive, medical, telecommunications, and industrial customers, was listed after what the actors described as a successful ransomware deployment and data exfiltration. The leak-site entry does not specify how many individuals or records are affected, nor does it detail the exact volume or sensitivity of the files taken.
Primary Disclosure Details
The losttrust leak site lists EnCom Polymers as a victim and states that internal files were exfiltrated during a ransomware attack. No sample data has been published in the initial listing, and the notification does not quantify the number of records involved. The disclosure indicates the incident occurred prior to the September 26 publication date, but the precise breach timeline, initial access vector, and full scope of compromised systems remain undisclosed by both the threat actor and the company. Public reporting on losttrust incidents consistently shows that the group posts victim names and sometimes partial file trees once negotiations fail or a self-imposed deadline passes.
Why This Matters for You and Your Family
When a manufacturing supplier like EnCom Polymers suffers a breach, the exposed internal files can contain information that reaches far beyond the company itself. Suppliers routinely handle customer purchase orders, employee directories, vendor contracts, and compliance documentation that include names, addresses, dates of birth, Social Security numbers, and financial details. If any of that information belongs to you or someone in your household — perhaps through an employer, a medical device manufacturer, or an automotive parts chain — the exposure creates immediate identity risk. Internal files exfiltrated in these attacks frequently include spreadsheets that map individuals to addresses, phone numbers, and account credentials, turning a corporate breach into a personal one.
Advertisement
BATECH StudioWe build it.We run it.Web apps, AI pipelines and internal tools — under your brand, not ours.Tell us what you need →
BATECH Studio and GalaxyWarden share common ownership.
Doxxing and Identity-Chain Implications
Ransomware leaks rarely stop at the first publication. Once internal files surface, opportunistic actors scrape emails, usernames, and passwords and then pivot to gaming platforms, social media, and data-broker profiles. A single credential pair taken from an EnCom Polymers file can link your work email to a personal Steam account or a child’s Roblox login, creating a doxxing chain that reveals home addresses, family relationships, and real-time location data. These cascades are especially dangerous for households because children’s gaming accounts are rarely protected with enterprise-grade controls and often reuse passwords originally set by parents. The result is accelerated identity theft, account takeovers, and targeted harassment that can persist for years after the initial corporate disclosure.
Losttrust Group Track Record
Public reporting attributes the losttrust ransomware operation to a group that emerged in early 2023. The actors typically gain initial access through phishing, compromised remote desktop credentials, or exploited vulnerabilities in internet-facing applications. After deployment they exfiltrate data before encrypting systems, then demand payment to prevent publication. Notable prior victims include mid-sized manufacturers, healthcare providers, and logistics firms. Their playbook emphasizes quiet data theft followed by public shaming on leak sites when victims refuse to pay, a pattern consistent with the EnCom Polymers listing. The group’s exact organizational structure remains unclear, but its tactics align with other mid-tier ransomware collectives that prioritize volume over highly customized attacks.
What to do
- Run a DoxxScan to map every link between your handles, emails, phone numbers, and real identity, then use the cleanup of Warden to remove what you can.
- Enable continuous DoxxScan monitoring across 13.1B+ breach records and 100+ platforms so the next exposure surfaces in hours rather than months.
- Rotate any password used at EnCom Polymers or its partners anywhere it is reused, and switch to 2FA through an authenticator app instead of SMS.
- Cover the household with DoxxScan family protection that extends to dependents and children’s gaming accounts that often chain back to the same breached credentials.
- Let remediation specialists handle ongoing takedown requests across data brokers and leak sites on your behalf.
The EnCom Polymers listing is a reminder that corporate ransomware incidents quickly become personal identity crises. One leaked spreadsheet can connect your professional life to every online account you or your children maintain. Start your DoxxScan trial today and combine continuous monitoring, AI-powered identity-chain mapping, and hands-on remediation by specialists to protect yourself and your entire family — including gaming accounts that are frequent targets once credentials surface. DoxxScan is also effective for protecting gaming accounts because credential leaks like this one routinely cascade into account takeovers and doxxing chains.
What the free scan actually returns
Found on people-search siteswe remove these
These listings are live, public, and legal to remove — and removing them is what we do.
Found in breach recordsverifiedreported — unverified
Each record is labeled: confirmed breach data, or an attacker’s claim no one has verified.
Leaked data cannot be deleted from the internet — anyone claiming otherwise is lying. Broker listings can be removed. We do the second, and show you exactly what to fix from the first.
For security and vendor-risk teams: a staff address in a leak does not mean you were breached — it usually means a third party was. We monitor a domain against 13.1B+ leaked records and tell you when one of your people appears. See what we would check →
Report details & sourcing
Related breaches
RXPE Group Listed by coinbasecartel Ransomware Group
RXPE Group was listed on the coinbasecartel ransomware leak site. The group claims to have stolen in…
Everglades Boats Listed by termite Ransomware Group
Founded in 2001, Everglades Boats is a manufacturer of offshore fishing boats. The company is headqu…
avkvalves.com Listed by settra Ransomware Group
Investigation: Belgicast Internacional S.L. Executive Summary An analysis of more than 10,000 intern…