On August 17, 2024, the ransomware group RansomHub added glasstile.com to its public leak site, claiming that the specialty glass-tile retailer suffered a ransomware attack in which internal files were exfiltrated. Customers and employees whose information passed through the company’s systems are now at risk of identity exposure even though the exact number of affected records remains unknown.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch glasstile.com
Get alerted the next time glasstile.com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about glasstile.com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Primary Disclosure Details
The RansomHub leak-site listing states that Glasstile.com was compromised in a ransomware incident and that attackers successfully removed internal files. The disclosure does not quantify the volume of data taken, list specific record counts, or enumerate exact data types beyond the broad category of internal files. The listing appeared on the group’s onion site on August 17, 2024, and includes a unique incident identifier linking to the published sample archive. No customer notification letter or regulatory filing has surfaced publicly, so the full scope of personal information involved cannot be confirmed from primary materials alone.
Why This Matters for You and Your Family
When a retailer like Glasstile.com loses control of internal files, the information inside often includes customer orders, shipping addresses, phone numbers, email accounts, and sometimes payment details. Any of those records can be combined with data from other breaches to build a profile an identity thief can exploit. For families, a single exposed order can reveal home addresses tied to children’s names, birthdays, or even school-related delivery notes. The breach therefore creates a concrete risk that your household data could surface in fraud schemes or targeted scams months or years from now.
Doxxing and Identity-Chain Risks
Exfiltrated internal files frequently contain not just names and addresses but also account usernames, order notes, and support-ticket histories. Attackers and subsequent data resellers can chain these details with usernames found on gaming platforms, social media, or older breaches. The result is an identity chain that links your real name and home address to online handles, making doxxing and swatting attacks easier. Credential leaks like this one cascade into account takeovers, especially when the same password has been reused across shopping sites and gaming services used by you or your children.