On December 30, 2024, the Israeli company operating the Kibbutz Lavi Hotel had 119,128 files listed on the leak site of the ransomware group Incransom. The exposed data totals more than 93 GB of internal documents from a business that employs between 50 and 99 people and generates annual revenue between $10 million and $25 million.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch lavi.co.il
Get alerted the next time lavi.co.il files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about lavi.co.il’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates the incident began as a ransomware attack in which attackers gained access to the company’s network, exfiltrated files, and later published a sample on their dark-web blog. The listing includes a wide range of internal files whose exact contents have not been independently verified by third parties. Available reporting describes the company as a furniture-industry operator headquartered in Israel with the publicly listed phone number +972 46799450. No confirmed count of affected individuals has been released, but the volume and nature of the files suggest employee, customer, supplier, and operational records may be present.
Why This Matters for You and Your Family
When a local business that handles reservations, payments, vendor contracts, or employment records is breached, your personal information can be caught in the net. A hotel stay, a furniture purchase, or a job application can leave behind names, addresses, phone numbers, email accounts, payment details, or identity documents. Once those records leave the company’s control, they can appear on criminal forums and be used for identity theft, phishing, or harassment. Ordinary families who dealt with the Kibbutz Lavi Hotel now face the same downstream risks that larger breaches create, yet they often receive far less public attention or corporate support.
The Doxxing and Identity-Chain Implications
Leaked internal files frequently contain spreadsheets that link names to addresses, phone numbers to email accounts, and customer IDs to booking histories. Attackers and subsequent buyers can combine this information with data from earlier breaches to build detailed profiles. A single exposed hotel record can anchor an identity chain that reveals family members, children’s names, and even gaming usernames tied to the same household email or phone. These chains accelerate doxxing because one confirmed link makes every other exposed handle easier to attribute to a real person. Credential leaks of this type regularly cascade into account takeovers on gaming platforms, social media, and email, turning a corporate breach into a personal privacy emergency for you and your family.