On June 9, 2025, the Medusa ransomware group added the San Jose Country Club to its public leak site, claiming that internal files had been exfiltrated from the Northern California private golf and social club.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch San Jose Country Club
Get alerted the next time San Jose Country Club files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about San Jose Country Club’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates the club, located at 15571 Alum Rock Ave in San Jose, was listed after a ransomware incident. The exposed material consists of internal files; the exact volume and specific data types remain unclear from available reporting. No confirmed count of affected members or families has been released. The club itself, established in 1899, serves hundreds of Bay Area families with golf, dining, events, and social activities. Industry research from sources such as DoxxScan™ continuous monitoring indicates that membership organizations like country clubs frequently store names, addresses, phone numbers, email addresses, dates of birth, and payment details — any of which could be inside the stolen files.
Why This Matters for You and Your Family
If you or your family are members, former members, or have attended events at the San Jose Country Club, your personal information may now sit on a ransomware leak site. Internal files exfiltrated often contain exactly the details criminals need to open accounts, file fraudulent tax returns, or impersonate you. For families, a single breach can expose children’s names and dates of birth alongside parent contact information, creating long-term risks. The June 9 listing means the data is already circulating among threat actors who buy and sell stolen records within hours.
The Doxxing and Identity-Chain Implications
Stolen club records rarely stay isolated. Criminals combine membership lists with other breaches to build identity chains that link your real name, home address, email, phone number, and online handles. Once mapped, these chains fuel doxxing, targeted phishing, and account takeovers. Gaming accounts belonging to children are especially vulnerable because kids often reuse passwords or email addresses tied to family memberships. A credential leak like this one can cascade into full household compromise when attackers follow the chain from an old club database to your child’s Roblox, Fortnite, or Discord account.