On June 25, 2024, the website tpocc.org appeared on the leak site of the abyss ransomware group, with the listing claiming 570GB of uncompressed internal files had been exfiltrated during a ransomware attack. Anyone whose personal information, employment records, or other details were stored by this organization may now face heightened risk of identity theft, targeted fraud, and doxxing.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch tpocc.org
Get alerted the next time tpocc.org files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about tpocc.org’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Details from the Leak Listing
The primary disclosure on the abyss leak site states that tpocc.org suffered a ransomware incident in which attackers extracted 570GB of internal files. The listing does not specify the exact types of data taken, the number of individuals affected, or the ransom demand. It simply presents the organization as a victim that has not yet paid, a common pressure tactic used by this group. Public reporting on similar listings indicates that such postings often include screenshots or sample files to demonstrate the attackers’ access, although the specific tpocc.org entry does not detail what was taken beyond the volume claimed.
Why This Matters for You and Your Family
When an organization that holds personal data is breached, the consequences reach far beyond corporate networks. If your name, address, date of birth, Social Security number, medical information, or financial details were part of those internal files, criminals can use them to open accounts in your name, file fraudulent tax returns, or impersonate you to family members and employers. Even when the leak site does not publish every record, the mere confirmation that 570GB of data was taken creates lasting exposure. Your family members, including children whose school or activity records may have been stored by the same entity, can become secondary targets once one person’s information surfaces.
Doxxing and Identity-Chain Risks
Ransomware operators rarely stop at encrypting files. After exfiltration they frequently threaten to publish or sell the data unless payment is made. Even partial leaks can start an identity chain: an email address leads to linked social-media accounts, which reveal phone numbers and family relationships. These connections allow criminals to build detailed profiles for spear-phishing, SIM-swapping, or extortion. Credential leaks from such incidents often cascade into gaming accounts belonging to you or your children, where stolen logins are used to hijack profiles, spread malware, or demand payment from young users who panic when their progress disappears.