On June 17, 2025, Metropolis Country Club appeared on the leak site of the dragonforce ransomware group after the club’s internal files were allegedly exfiltrated during a ransomware attack. Members and their families whose personal information was stored in the club’s systems may now face heightened risk of identity theft, account takeovers, and doxxing.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Metropolis Country Club
Get alerted the next time Metropolis Country Club files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Metropolis Country Club’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates that dragonforce listed Metropolis Country Club on its leak site on June 17, 2025. The club, which provides golf, racquets, aquatics, dining, and family-oriented activities, had internal files taken in the attack. The exact number of individuals affected remains unknown, and the specific types of data exposed have not been fully detailed in available reporting. The club’s membership records, billing information, and contact details for families are believed to have been among the records at risk.
Why This Matters for You and Your Family
When a private club like Metropolis suffers a breach, the information exposed often includes names, addresses, phone numbers, email addresses, dates of birth, and payment details tied to family memberships. These details can be used to impersonate you, open fraudulent accounts, or target your children. Because many families reuse passwords across personal and recreational logins, a single breach can quickly spread. If your family belongs to similar clubs, sports organizations, or community groups, this incident shows how everyday membership data can become part of a larger chain of exposure.
The Doxxing and Identity-Chain Implications
Ransomware operators rarely stop at one leak. Once internal files are public, opportunistic actors scrape names, emails, and usernames and begin linking them across social media, gaming platforms, and data-broker sites. A parent’s club email combined with a child’s gaming handle can reveal home addresses, school names, and travel patterns. Credential leaks like this one frequently cascade into account takeovers on Steam, Roblox, Fortnite, and other services children use. The result is a growing digital profile that can be exploited for harassment, extortion, or further fraud.