LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

Recent Breaches › Catholic Charities of the Diocese of Albany Listed by pear Ransomware Group

HIGH severityUnverified claimHow we verify

Catholic Charities of the Diocese of Albany Listed by pear Ransomware Group: Ransomware Claim — What’s Alleged & What To Do

RBRecent Breaches Breach Intelligence·July 30, 2025
Catholic Charities of the Diocese of Albany Listed by pear Ransomware Group

Reported July 30, 2025.

HIGH
Severity
July 30, 2025
Disclosed
ShareXLinkedInFacebookRedditWhatsAppTelegram

Catholic Charities of the Diocese of Albany was listed by the pear ransomware group on July 30, 2025, after internal files were exfiltrated in a ransomware attack. The number of individuals affected is not yet known; anyone who may have records with the organization should monitor their accounts and follow any guidance the charity issues.

Severity & verification
HIGH severityUnverified claim
Data types not itemised.
Published on a ransomware group’s leak site — an unverified extortion claim until the named organization or credible reporting corroborates it.
Check your exposure
See every leak and listing tied to your email. We can’t confirm any single incident against the sources we search, so we won’t pretend to. 15-second check, no card, no account. Details go to your inbox.

By running your scan you agree to the Terms and Conditions and the Privacy Policy, and to GalaxyWarden emailing you the results of this scan.

Catholic Charities of the Diocese of Albany was listed by the pear ransomware group on July 30, 2025, according to public reporting of the claim. The listing indicates that internal files were exfiltrated in a ransomware attack, though the number of people affected remains unknown and further details about the incident have not been publicly confirmed.

As one of the largest private social service agencies in its region, the organization handles sensitive information connected to vulnerable clients and community programs. Any confirmed exposure of internal files therefore carries potential consequences for individuals who rely on its services, even while the precise scope stays undisclosed.

Breaking down the breach

Public information about the incident is limited to the pear group's listing of Catholic Charities of the Diocese of Albany, reported on July 30, 2025. The group claims that internal files were exfiltrated during a ransomware attack. No official confirmation of the claim, no timeline of when the intrusion occurred, no count of affected individuals, and no description of the specific method of access have been released in the available record.

Ransomware incidents of this type typically involve unauthorized access followed by both encryption of systems and theft of data for leverage, but those operational details are not stated for this case. The only concrete assertion on record is the group's claim of file exfiltration. Until the organization or independent investigators provide additional verified information, the full scale and technical path of the breach remain unconfirmed.

The group behind it: pear

Pear is a ransomware operation known for listing victims on dedicated leak sites as part of a double-extortion model. In such campaigns, operators typically claim to have encrypted systems and stolen data, then threaten to publish the material if a ransom is not paid. The group has appeared in public threat reporting as an actor that targets a range of organizations and posts victim names along with purported sample files or descriptions of stolen data.

In this instance, the listing of Catholic Charities of the Diocese of Albany constitutes a claim by pear rather than independently verified proof. No statements attributed specifically to pear about the volume, sensitivity, or content of files from this particular victim appear beyond the general assertion of internal-file exfiltration. Background on the group's broader tactics is drawn from established public documentation of its activity; nothing further about its interaction with this organization has been established in the facts at hand.

Catholic Charities of the Diocese of Albany and its sector

Catholic Charities of the Diocese of Albany is described as one of the largest private social-service agencies in its region. Organizations of this type deliver a wide array of community support, including assistance with housing, food security, counseling, immigration services, and aid for families and individuals facing economic or personal hardship. They operate under the broader umbrella of Catholic Charities networks that serve dioceses across the United States.

Because these agencies work directly with people in need, they routinely collect and store personal, financial, health-related, and case-management information. A ransomware claim against such an entity therefore raises concerns that extend beyond operational disruption to the privacy and safety of clients who may have limited resources to respond to identity or fraud risks. The sector as a whole has faced increasing attention from cybercriminals precisely because of the sensitive data it holds and the essential nature of the services it provides.

What data was at risk

The available facts state only that internal files were exfiltrated in a ransomware attack. No inventory of specific data categories—such as names, addresses, Social Security numbers, medical records, financial details, or case notes—has been disclosed. The number of individuals whose information may have been involved is listed as unknown.

Organizations like Catholic Charities of the Diocese of Albany typically maintain records necessary to deliver social services. These can include client contact information, eligibility documentation, service histories, and related administrative files. However, because the exact contents of the claimed exfiltration remain unconfirmed, it is not possible to state which of those categories, if any, were actually taken. Readers should treat any assertion of particular data types beyond “internal files” as speculative until official notification or verified reporting appears.

What's at stake

For individuals who have interacted with the agency, the primary risks center on potential misuse of personal information if the claimed files contain identifying or sensitive details. That could include attempts at identity theft, targeted phishing, or fraud that exploits knowledge of a person’s circumstances. Even without confirmed data types, the mere possibility of exposure can create anxiety and require heightened vigilance.

For the organization itself, a ransomware incident can interrupt service delivery, impose recovery costs, and erode trust among clients and partners. Operational systems may be unavailable for a period, and staff must divert attention to containment, investigation, and communication. Because the agency serves vulnerable populations, any prolonged disruption can have immediate human consequences beyond the technical breach. At present these impacts remain potential rather than documented, given the limited public detail.

Were you affected?

If you have received services from Catholic Charities of the Diocese of Albany or provided personal information to the agency, monitor financial accounts and credit reports for unusual activity and be cautious of unsolicited communications that reference the organization or your case details. Consider placing a fraud alert with the major credit bureaus if you believe your data may be involved. Official notifications, if any are issued, will provide the most reliable guidance on next steps.

You can also run a free exposure scan of your email address to check whether it has already appeared in known breach data sets. Doing so offers a practical starting point for assessing personal risk while further information about this specific incident develops.

AICompiled with AI assistance from public sources and published under our editorial standards.

Editorial & sourcing policy
Recent Breaches is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data, and we do not hold the data claimed in leak-site listings. Incidents are compiled from publicly accessible sources and threat-intelligence platforms and are reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — write to support@galaxywarden.com or press@recentbreaches.com.
Check if you’re exposed →

How this breach connects

Company

Attributed to

Method

CompanyCatholic Charities of the Diocese of Albany security record
87/100
DoxxScan™ · Low doxx risk
B 80Good record

1 reported incident on record.

See Catholic Charities of the Diocese of Albany’s full breach history →

More recent breaches

Law Office of Ronald W. Hillberg Listed by pear Ransomware GroupNovember 12, 2025Gerson & Schwartz Accident & Injury Lawyers Listed by pear Ransomware GroupOctober 29, 2025GFF&F - Galine, Frye, Fitting & Frangos, LLP Listed by pear Ransomware GroupOctober 14, 2025West Chester Listed by pear Ransomware GroupAugust 25, 2025

Latest breaches

Read GalaxyWarden’s full analysis of the Catholic Charities of the Diocese of Albany Listed by pear Ransomware Group →

Source: threat-actor leak-site listing

Publicly posted by pear — unverified claim, pending independent verification

Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.

Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.

ShareXLinkedInFacebookRedditWhatsAppTelegram