On February 7, 2026, the ransomware group Clop added escali.com to its public leak site, claiming that internal files had been exfiltrated from the retail company known for selling digital scales.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Escali.Com
Get alerted the next time Escali.Com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Escali.Com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates that Clop claims to have stolen internal documents during a ransomware attack on Escali. The company sells kitchen scales, bathroom scales, body-fat analyzers, and medical-grade weighing devices. No customer names, payment-card details, or Social Security numbers have been listed in the initial posting. The leak site entry simply states that data was taken and gives Escali a short window to negotiate before files are released. As of this writing, the exact volume and specific types of files remain unconfirmed by independent verification, though the presence on Clop’s onion site is verifiable.
Why This Matters for You and Your Family
Even when a breach does not publish your name immediately, the exposure of internal company files can still put ordinary customers at risk. Escali customers often register products, create accounts, or contact support with their email address, phone number, shipping address, or order history. If those records sit inside the stolen files, they become raw material for identity thieves who combine them with other leaks. For families this can mean sudden spam, targeted phishing texts that reference recent purchases, or the slow assembly of a profile that leads to account takeovers on retail sites, banks, or email. Any data that links your name to a physical address or phone becomes dangerous once it leaves the company’s control.
The Doxxing and Identity-Chain Implications
Ransomware leaks rarely stop at one company. Criminals treat stolen spreadsheets and customer databases as starting points for larger chains. An email address found in Escali’s files can be matched to credentials leaked from a past breach, a gaming account, or a family member’s social-media handle. That linkage turns a minor retail breach into a map that reveals where you live, which schools your children attend, and which usernames you reuse. Once the chain exists, doxxing escalates quickly: harassers publish home addresses, threat actors hijack linked accounts, or extortionists demand payment to delete the bundle. Credential leaks like this one routinely cascade into gaming-account takeovers because children often use the same email or password patterns as their parents’ shopping accounts.