On February 19, 2023, logistics company jetboxcargo.com appeared on the leak site operated by the LockBit 3.0 ransomware group. The listing states that internal files were exfiltrated during a ransomware attack on the Costa Rica-based freight forwarder that provides air, sea, and customs brokerage services between the United States and Central America. The disclosure does not specify how many individuals or businesses are affected, nor does it list exact data types beyond “internal files.”
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch jetboxcargo.com
Get alerted the next time jetboxcargo.com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about jetboxcargo.com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Primary Disclosure Details
The LockBit 3.0 leak page, archived on ransomware.live, states that JetBox Cargo’s systems were compromised and that attackers successfully removed data before encrypting remaining files. No victim count, no sample documents, and no ransom amount are published on the page. The notification simply states that the company was hit and that exfiltrated material will be released if demands are not met. Public reporting on LockBit operations indicates that such listings typically follow a double-extortion model: encryption plus public shaming.
Why This Matters for You and Your Family
When a logistics provider that moves shipments between the United States and Costa Rica loses control of internal files, anyone who has shipped goods through them may have personal or business records exposed. Names, addresses, phone numbers, email addresses, customs declarations, and payment details are common in freight-forwarding systems. If your information appears in those files, it can be combined with other breaches to build a profile that identity thieves or stalkers can exploit. Even if you never directly contracted with JetBox Cargo, shared vendor networks mean your data can still surface in these incidents.
Doxxing and Identity-Chain Risks
Internal logistics documents often contain linked identifiers: an email tied to a shipping address, a phone number attached to a customs form, or account credentials reused across business and personal logins. These connections create doxxing chains. A single leaked record can lead to account takeovers on e-commerce sites, social-media profiles, or even children’s gaming accounts that share the same family email or password. Once attackers map one identity element to another, they can escalate from simple credential sales to full identity theft or targeted harassment.