On November 15, 2023, EOS appeared on the Lorenz ransomware group’s leak site. The listing states that the company suffered a ransomware attack in which internal files were exfiltrated. The disclosure does not specify the number of records affected, the exact data types stolen, or the ransom demand, leaving many details unknown to the public.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch EOS
Get alerted the next time EOS files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about EOS’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Reported Details from the Listing
The Lorenz leak page for EOS states that the victim was listed after an alleged ransomware deployment and data theft. It claims internal files were taken but provides no sample documents or further breakdown. The entry carries the standard Lorenz branding and extortion timeline, indicating the group followed its usual pattern of exfiltration before encryption or public shaming. No official breach notification from EOS has surfaced yet, so the only primary facts available come directly from the ransomware.live mirror of the Lorenz site.
Why This Matters for You and Your Family
When a company’s internal files are stolen, the exposure often reaches far beyond corporate walls. Employee records, vendor contracts, customer spreadsheets, and email archives frequently contain names, addresses, dates of birth, Social Security numbers, and financial details belonging to ordinary people. If your employer, doctor, school, or service provider uses EOS, your information could be sitting in those exfiltrated files. Even without exact record counts, the risk is real: once data leaves a secure environment it can be traded, sold, or used to target you and your family with identity theft, phishing, or fraud.
The Doxxing and Identity-Chain Risks
Stolen internal files accelerate doxxing chains. A single spreadsheet linking an email address to a home address, phone number, or child’s school can be combined with other leaks to build a complete profile. Attackers then move from one platform to another, compromising accounts that share passwords or security questions. Gaming accounts are especially vulnerable in these cascades because children often reuse credentials across entertainment services and school portals. The result is not abstract; it can lead to harassment, account takeovers, or targeted scams against every member of the household.