On May 2, 2025, the qilin ransomware group added teamhorner.com to its leak site and announced that all exfiltrated internal files would become available for public download on 11 June 2025. Team Horner, a family-owned group of companies founded in 1969 that manufactures and distributes products for the swimming pool and spa industry worldwide, is the latest victim in a string of ransomware incidents that expose ordinary business data to anyone with an internet connection.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch teamhorner.com
Get alerted the next time teamhorner.com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about teamhorner.com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Reported Details of the breach
Public reporting indicates the attackers gained access to Team Horner’s internal network, exfiltrated files, and deployed ransomware. The qilin leak site lists the company and states that the full dataset will be released for download on 11 June 2025 unless the victim pays. No exact victim count has been published, and the precise volume or sensitivity of the files remains unclear from available reporting. The incident follows the group’s standard pattern of stealing data before encrypting systems and then using the threat of public release to pressure payment.
Why this matters for you and your family
When a company like Team Horner suffers a breach, the files often contain names, addresses, phone numbers, email accounts, and payment details belonging to customers, suppliers, and employees. If your pool, spa, or water-treatment provider uses Team Horner products or services, your information could be among the records now scheduled for public release. Once that data reaches criminal forums, it rarely stays contained. Names, emails, and addresses become starting points for identity theft, phishing campaigns, and harassment that can reach you and your family at home.
Children’s details sometimes appear in supplier or loyalty-program records. A single leak can therefore place both adult and minor family members at risk. The 11 June 2025 publication deadline creates a narrow window before the information spreads beyond the initial attackers.