On August 15, 2025, manufacturing supplier Grand Rapids Controls appeared on the leak site of the anubis ransomware group, with attackers releasing 150 GB of internal files that include confidential documents and NDA agreements with automotive companies such as Ford, Bentley, and Lear.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Grand Rapids Controls
Get alerted the next time Grand Rapids Controls files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Grand Rapids Controls’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Available reporting describes a ransomware attack in which anubis exfiltrated data from Grand Rapids Controls before encrypting systems. The group published a sample of the stolen material on its dark-web leak site, totaling 150 GB. Exposed information includes internal company files and non-disclosure agreements signed with major manufacturers. Public reporting indicates the number of individuals whose personal data was contained in the files remains unknown. No evidence has surfaced that customer databases or payment card information were the primary target; the focus appears to be corporate documents.
Why This Matters for You and Your Family
When a supplier like Grand Rapids Controls is breached, the ripple effects reach ordinary people. Employees, contractors, and anyone whose personal details appear in those NDAs or internal spreadsheets can face identity theft, phishing campaigns, or blackmail attempts. If your employer works with automotive vendors, your name, address, or contact information may now sit in a ransomware data dump. For your family this means higher risk of fraudulent loans, tax fraud, or targeted scams that exploit leaked workplace relationships. Confidential documents often contain far more than business secrets — they can list home addresses, phone numbers, and family member references that criminals later weaponize.
The Doxxing and Identity-Chain Implications
Ransomware leaks rarely stop at one company. A single exposed email or phone number can link your professional identity to personal accounts across the internet. Attackers chain these fragments together: an NDA lists your work email, that email appears in a past breach, and suddenly your social-media handles, children’s school records, or gaming usernames become visible. This is exactly how doxxing escalates from corporate theft to personal harassment. Credential leaks like this one cascade into account takeovers on gaming platforms, where children’s accounts are frequently targeted because parents reuse passwords. Once initial access is gained, extortion demands often follow, using the threat of further data release to pressure victims into paying.