On January 21, 2024, the ransomware group LockBit3 added umi-tiles.com to its public leak site, listing Saha Mosaic Industry Public Company Limited as a victim of a ransomware attack in which internal files were allegedly exfiltrated. The Thai tile manufacturer, known for its Duragres brand, joins hundreds of organizations publicly named by the group that year. If your personal information or that of your family appears in corporate records held by suppliers, vendors, or manufacturers like this one, the breach directly affects you.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch umi-tiles.com
Get alerted the next time umi-tiles.com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about umi-tiles.com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Reported Details from the Listing
The LockBit3 leak-site entry states that internal files were exfiltrated during a ransomware incident but does not disclose the volume of data taken, the exact types of records involved, or any specific deadlines for ransom payment. The disclosure indicates the company operates under the Duragres brand and is listed on the Stock Exchange of Thailand. No customer record count is provided, and the listing does not detail whether personally identifiable information such as names, addresses, phone numbers, or payment details was included in the stolen material. Public mirrors of the leak site, including ransomware.live, preserve the original posting with its limited claims.
Why This Matters for You and Your Family
When a manufacturer’s internal files leave its network, the exposure often reaches beyond employees to anyone whose data was stored in those systems. Suppliers, distributors, retailers, and even end customers frequently appear in invoices, shipping manifests, warranty registrations, or marketing spreadsheets. Internal files exfiltrated can contain exactly the kind of contact and transaction history that identity thieves prize. For your family this means heightened risk of phishing campaigns, account takeover attempts, and unwanted solicitations that feel personal because the attackers now hold real details tied to your name and address.
Doxxing and Identity-Chain Risks
Stolen internal files rarely stay isolated. A single email address or phone number found inside can be cross-referenced with gaming accounts, social-media handles, and public records to build a complete identity chain. Once attackers link your work or purchase history to your personal online presence, they can launch targeted doxxing, SIM-swapping, or extortion attempts. Credential leaks of this nature frequently cascade into gaming account takeovers, especially for children whose usernames and reused passwords surface in the same datasets. The speed with which such chains form leaves most families unaware until damage appears on credit reports or social media.