On July 2, 2024, the Franciscan Friars of the Atonement appeared on the leak site operated by the dragonforce ransomware group. The religious order, based in New York, was listed after attackers claimed to have exfiltrated internal files during a ransomware incident. The disclosure does not specify how many individuals are affected or exactly which records were taken.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Franciscan Friars of the Atonement
Get alerted the next time Franciscan Friars of the Atonement files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Franciscan Friars of the Atonement’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Details from the Leak Site
The primary listing on the dragonforce leak portal, archived via ransomware.live, states that internal files were exfiltrated in a ransomware attack. No sample data has been published publicly at the time of writing, and the entry does not quantify the volume or type of documents beyond describing them as internal files. The notification leaves open whether donor records, employee personnel files, or correspondence involving laypeople who interact with the order were included. Public reporting on similar dragonforce postings indicates that when samples eventually appear they often contain spreadsheets, PDFs, and email archives.
Why This Matters for You and Your Family
Even though the victim is a religious community, many ordinary people entrust personal information to such organizations. If you have ever made a donation, attended a retreat, enrolled a child in a program, or worked with the Franciscan Friars of the Atonement, your name, address, phone number, email, or financial details could be among the stolen material. Internal files exfiltrated July 2024 can easily contain years of accumulated records that link families to the order. Once those records leave the victim’s control, they circulate in criminal ecosystems where buyers look for identities to impersonate, pressure, or resell.
Doxxing and Identity-Chain Risks
Stolen internal files rarely stay isolated. A single email address or phone number found in the leak can be cross-referenced with credential-stuffing databases, public records, and social-media handles. Attackers then build an identity chain that reveals where you live, where your children go to school, and which online accounts you control. Gaming accounts belonging to teenagers are especially vulnerable because kids often reuse passwords or email addresses tied to family donations or church registrations. That linkage turns a breach that feels distant into a direct route for account takeover, harassment, or identity theft targeting your household.