On April 30, 2025, Canadian steel service center Janco Steel appeared on the leak site of the interlock ransomware group, with the attackers claiming to have exfiltrated internal files from the family-owned business that supplies rolled steel plate to manufacturers across Canada and the United States.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Janco Steel
Get alerted the next time Janco Steel files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Janco Steel’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Reported Details of the Breach
Public reporting indicates that Janco Steel was listed on the interlock ransomware group’s leak page on that date. The company, which specializes in steel processing and emphasizes safety, quality, and long-term customer relationships, has not publicly confirmed the volume or exact nature of the stolen data. Available reporting describes the incident as a ransomware attack in which internal files were allegedly exfiltrated. No specific victim count or list of exposed record types has been published by either the company or the threat actors.
Why This Matters for You and Your Family
Even when a breach hits a business rather than a consumer service, the consequences can reach your household. Internal files often contain supplier contracts, employee records, customer invoices, or correspondence that include names, addresses, phone numbers, and email accounts. If any of that information belongs to you or someone in your family — perhaps through an employer, a vendor relationship, or a family member who works with steel manufacturers — it can be used to launch targeted attacks. Ransomware operators increasingly sell or publish such data, turning what looks like a corporate problem into a personal one.
The Doxxing and Identity-Chain Risks
Stolen internal documents frequently create doxxing chains. A single leaked email or phone number can be cross-referenced with gaming accounts, social-media handles, or family-member profiles. Credential leaks like this one cascade into account takeovers when the same password has been reused elsewhere. Children’s gaming accounts are especially vulnerable because they often share household addresses or parent-managed email addresses, allowing attackers to move from a corporate breach to personal harassment or identity theft in a matter of hours or days.