On February 28, 2025, ransomware group IncRansom added silocaf.com to its public leak site and began publishing internal files allegedly stolen from Silocaf of New Orleans, Inc., a coffee processor with 333 employees and $83.4 million in revenue.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch silocaf.com
Get alerted the next time silocaf.com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about silocaf.com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates that IncRansom claims to have exfiltrated internal documents during a ransomware attack on the company, which was founded in 1993 as a subsidiary of Italy’s Pacorini S.r.l. The leak site lists Silocaf’s main phone number, revenue figure, and employee count alongside samples of the stolen data. No confirmed total number of individuals whose information appears in the files has been released. Available reporting describes the exposed material as internal files, though the precise data types—such as customer records, employee details, or vendor contracts—have not been independently verified beyond the group’s own posting.
Why This Matters for You and Your Family
When a company like Silocaf suffers a breach, the information it holds rarely stays isolated. Internal files often contain names, addresses, phone numbers, email accounts, and business relationships that can be pieced together with data from other leaks. If you or anyone in your household has done business with a coffee roaster, importer, or distributor, your contact details could already be circulating. Criminals treat these datasets as building blocks. One exposed email or phone number becomes the key that unlocks other accounts, turning a corporate incident into a personal privacy problem that can affect your family for years.
The Doxxing and Identity-Chain Implications
Stolen internal files frequently include spreadsheets that link personal identifiers to external accounts. A single row containing an employee’s or customer’s email, phone, and shipping address can be cross-referenced with credential leaks from unrelated services. This creates an identity chain: an attacker starts with one fact and rapidly maps it to social-media handles, gaming usernames, and family-member details. Credential leaks like this one cascade into account takeovers and doxxing chains, especially when children’s gaming accounts reuse the same passwords or recovery emails as a parent’s work-related contact. Once the chain is built, extortion demands, identity theft, or public shaming become straightforward.