Company Breach Ratings
Companies that appear in our tracker — some through breaches the organisation, a regulator or a breach index has confirmed, and most through unconfirmed listings posted by ransomware and extortion groups. Each carries a DoxxScan™ Rating for how exposed their customers’ information may be if the reports behind it are accurate (lower rating = higher doxx risk), and a Safety Grade summarising that public record (higher = cleaner). Unconfirmed claims are labelled as such and count for less in both numbers. A listing is not proof that a breach happened.
Companies we track
1.com
nts.go.kr
psenergy.com
NRS Healthcare
Oscar Software
Jablite
MICROFINANCE INSTITUTION
swiftatlanta.com
Victoria Park
City of Modesto, CA
AV Industries
grupcovesa.com
Rimex
modestogov.com
Wyoming County Community Health System
LINX
FURUNO
mcna.net
Tanbridge House School
ulmacarretillas.com
islandinsurance.ca
errebielle.it
piramal.com
ARROWAL
lqtbg.com.cn
Buffco Production, Inc
MERS Missouri Goodwill Industries
The Ultra-met
Savanna Technical College
Helmholtz Zentrum Munchen
IRCO
OKSGROUP
Ville de Lille
Wymondham College
Lightcast
KONICA
SOCOMEC
Kk Mehta Cpa Associates
Pizza 73
ita-moulding-process.com
turvatehnika
Guyana Goldfields
Picou Builders Supply
Lysander Associates
Optica
James, McElroy and Diehl
TAC
CONFIDO
precisionit.co.in
demechindia.com
slipstreaminc.org
giga.com.vc
DGCX
la providence
CESCE
NOVELIS
berjayaClubs
ALKF+
FICHTNER
jubileeinsurance.com
GLOBALFARM.COM.AR
INTERTERMINALS.COM
ATOS.NET
TGW.COM
DERK.CL
GOA.GOV.IN
ALTO.US
REDBOXVOICE.COM
GRUPOFLORAPLANT.COM
DETECH.COM.TR
SPI.CO.ZA
THECYPRINUS.COM
PROGRESSION.COM
UNIMELB.EDU.AU
CROWNRESORT.COM.AU
The DoxxScan™ Rating is an automated, informational estimate of how exposed a company’s customers may be if the incidents on its public record are accurate, derived solely from that record — the number of incidents, how recent and severe they were, the sensitivity of the data involved, and who established the incident. Most incidents we track are unverified listings published by ransomware and extortion groups; those are accusations, not established facts, and they count for less. A lower rating indicates a higher likelihood that personal information tied to this company is circulating and could be used to dox or target individuals. It is not an audit, certification, or assessment of the company’s current security controls, and it does not represent present-day risk. It may rely on incomplete or unverified public reports and can change as new information emerges. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company named here. Provided for general awareness only — not legal, financial, or security advice. How the rating is calculated →
