Ramfoam.com was listed on the LockBit 3.0 leak site on May 21, 2024, after the company suffered a ransomware attack in which internal files were allegedly exfiltrated. The manufacturer of foam products for sports, leisure, corporate clients, schools and universities has not publicly quantified how many customer or employee records were affected, nor has it issued a detailed breach notification to date.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch ramfoam.com
Get alerted the next time ramfoam.com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about ramfoam.com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Primary Disclosure Details
The LockBit 3.0 leak site listing states that Ramfoam’s internal files were taken during a ransomware intrusion. The entry does not specify the volume of data, the exact types of records, or any ransom demand. It simply states that exfiltrated material is now published on the extortion platform and will remain available unless the company meets the actors’ terms. Public reporting on LockBit 3.0 indicates the group typically posts samples and then waits for payment before releasing the full archive or removing the listing.
Why This Matters for You and Your Family
When a supplier to schools, universities, private clubs and corporate clients is breached, personal information tied to orders, invoices, event bookings or employee purchases can easily end up in the hands of criminals. Even if the leak site listing does not detail what was taken, the exposure of internal files often includes names, addresses, phone numbers, email accounts and payment details. For families whose children attend clubs or schools that bought Ramfoam products, or for anyone who has done business with the company, this creates a direct route for identity theft, phishing and account takeover attempts. The breach therefore touches ordinary households far beyond the company’s own staff.
Doxxing and Identity-Chain Risks
Stolen internal files frequently contain spreadsheets that link customer names to addresses, order histories and contact details. Attackers can combine this information with data from earlier breaches to build complete identity chains. A single leaked email or phone number from Ramfoam can be matched to gaming accounts, social-media handles or family-member records, turning one supplier breach into long-term doxxing exposure. Credential leaks of this kind routinely cascade into takeovers of personal and children’s gaming accounts that share the same passwords or recovery addresses.