On July 25, 2022, the domain overseas-ast.com appeared on the LockBit 3.0 ransomware leak site, with the group claiming to have exfiltrated internal files during a ransomware attack. Anyone whose personal or employment records were stored in those systems may now be exposed, even though the exact number of affected individuals remains unknown.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch overseas-ast.com
Get alerted the next time overseas-ast.com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about overseas-ast.com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Details from the Leak Site Listing
The primary disclosure on the LockBit 3.0 leak portal states that overseas-ast.com was compromised and that attackers successfully stole internal data. The listing does not quantify how many records were taken, name the specific types of files, or reveal any sample data. It simply states that exfiltration occurred and gives the victim organization a deadline to negotiate before the material is published or sold. Public mirrors of the leak site, such as ransomware.live, preserve this original posting with its timestamp of July 25, 2022.
Why This Matters for You and Your Family
When a company that handles travel, relocation, or overseas employment records is breached, the information involved often includes full names, addresses, dates of birth, passport numbers, financial details, and employment contracts. Even if the leak site listing does not detail what was taken, the nature of the business makes it likely that ordinary people and their families are directly affected. Once that data leaves the company’s control, it can be used for identity theft, tax fraud, or targeted phishing for years to come. Your family’s overseas or immigration records may now sit in criminal hands with no expiration date.
The Doxxing and Identity-Chain Risk
Ransomware operators rarely stop at one dataset. A single exposed email or phone number from this claimed breach can be chained with information from previous leaks to build a complete profile: home address, family members’ names, children’s schools, and even gaming account handles. These identity chains allow criminals to hijack accounts, impersonate victims, or launch convincing extortion attempts. Credential leaks like this one frequently cascade into gaming account takeovers, especially for children whose usernames and passwords are reused across entertainment platforms and adult services. The longer the data circulates on dark-web markets, the harder it becomes to contain the damage.