On November 24, 2025, the ransomware group LockBit5 added jvdbassoc.com to its public leak site, claiming that it had exfiltrated internal files from JVDB & Associates Inc, a firm based in Elgin, Illinois, founded in 1999.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 582 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
What's Publicly Reported from Reporting
Public reporting indicates the company was hit by a ransomware attack in which attackers copied internal documents before encrypting systems or demanding payment. The leak site entry lists the victim under the LockBit5 banner and provides a sample of the stolen data. No exact count of affected individuals has been released, but the nature of the files suggests employee, client, and operational records were taken. Available reporting describes the incident as part of LockBit5’s ongoing campaign of publishing victim data when ransom demands go unmet.
Why This Matters for You and Your Family
When a company that holds personal information suffers a breach, your data can end up in the hands of criminals. Internal files often contain names, addresses, Social Security numbers, dates of birth, financial details, or client records. Once exposed, this information can be sold, traded, or used to target you directly. For ordinary families, the fallout includes sudden spam, identity theft attempts, fraudulent loans, or strangers showing up at your doorstep. Even if you never directly hired JVDB & Associates, any overlap with their client or vendor network puts your household at risk.
The Doxxing and Identity-Chain Risks
Stolen internal files frequently contain email addresses, usernames, phone numbers, and notes that link one piece of information to another. Attackers and data brokers then build chains: an old work email leads to a personal account, which reveals a child’s gaming username, which connects back to a home address. These chains accelerate doxxing. A single breach like this can cascade into account takeovers across email, banking, social media, and gaming platforms. Public reporting shows that credential leaks from business compromises routinely surface on underground forums within weeks, giving anyone with basic tools the ability to map and harass ordinary families.