On July 24, 2025, marketing firm JWiz appeared on the leak site of the pear ransomware group, with samples of its internal files made publicly available after a ransomware attack.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch JWiz
Get alerted the next time JWiz files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about JWiz’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates that pear actors exfiltrated internal files from JWiz, a company that provides online advertising, lead generation, social media management, website design, development, hosting, and search engine optimization services to small and local businesses. The leak site lists the incident without disclosing the exact number of people whose data may have been exposed. Available reporting describes the posted material as samples of internal documents rather than a full data dump. No specific deadline for payment or further escalation has been publicly detailed in the initial listing.
Why This Matters for You and Your Family
When a marketing services provider like JWiz is breached, the information it holds often includes contact details, email addresses, phone numbers, and client records belonging to ordinary small-business owners and their customers. If you or anyone in your family has worked with a local marketing firm for website help, social media, or lead generation, your personal or household data could be among the records now circulating. Internal files from such companies frequently contain spreadsheets that link names, addresses, and payment information, creating long-term risks of identity theft, spam, phishing, and financial fraud that can affect your family for years.
The Doxxing and Identity-Chain Risks
Leaked marketing and client files rarely stop at one company. Attackers can combine them with other publicly available records to build detailed profiles that connect your email address, phone number, social media handles, and physical address. This identity-chain process turns a single breach into repeated targeting: once criminals link your details across platforms, they can pursue account takeovers, doxxing, or extortion. Credential leaks like this one also cascade into gaming accounts. If your children use family email addresses or shared phones for Roblox, Fortnite, or other online games, the same leaked information can lead to those accounts being compromised and used to harass or further expose your household.