Company Breach Ratings
Companies that appear in our tracker — some through breaches the organisation, a regulator or a breach index has confirmed, and most through unconfirmed listings posted by ransomware and extortion groups. Each carries a DoxxScan™ Rating for how exposed their customers’ information may be if the reports behind it are accurate (lower rating = higher doxx risk), and a Safety Grade summarising that public record (higher = cleaner). Unconfirmed claims are labelled as such and count for less in both numbers. A listing is not proof that a breach happened.
Companies we track
Intuitive Machines
CHX Express
KUPER
McCarthy
Arizona Professional Painting
The American Board of Preventive Medicine
DEVCO
vp-brands.com
Van Atta Engineering
CarePoint Health
TDS
Office Furniture Group
Lindabury
Prescott & Holden
eclagestio360.com
Misr Chemical Industries
VeriCon
Hillside Lumber
mrs holdings
Rain Makers Solutions
Houghton Mifflin Harcourt Company
DermaPharm
PennEastern Architects
CF Evans Construction
Imex International
CAD-IT UK
CCD Interiors
DL Cohen Construction
Ruiz Barbarin Arquitectos Slp
Fogel Capital Management
Calidra
CMC Expertise Comptable
Acros Sport GmbH
cmswpc.com
EMA Engineering & Consulting
Earth Systems
Ashtech Infotech
Greenwoods Dental Centre
Stuf Storage
egnyte.com
Accessoires Outillage Ltee
Desysweb
Réseau Radiologique Romand
Trellix (McAfee & FireEye)
Neurotrials Research Inc
autorisk.org
K & E Distributing
Advanced Laundry Systems
Exco Technologies
Zojirushi
Shipping Services
rjrgleanergroup.com
Norcal Training Center
de.yangming.com
anser-coding.com
Soprolux
Rehab Clinics Group Ltd
rhactushotel.com
Grau GmbH
Jacobs Doland Beer
Elia Law Firm
Forsheda Stlverktyg
Fabritius
Beaconhouse School System
Colegio Notre Dame Campinas
IT Management
Heinrich Kopp
Farmers Association of Iceland
Levante Living
Ropers Majeski
East
ABI and Ideal Tape
ttt.vn TTT Corporation
Kınık Gross
Scales and Associates Inc
The DoxxScan™ Rating is an automated, informational estimate of how exposed a company’s customers may be if the incidents on its public record are accurate, derived solely from that record — the number of incidents, how recent and severe they were, the sensitivity of the data involved, and who established the incident. Most incidents we track are unverified listings published by ransomware and extortion groups; those are accusations, not established facts, and they count for less. A lower rating indicates a higher likelihood that personal information tied to this company is circulating and could be used to dox or target individuals. It is not an audit, certification, or assessment of the company’s current security controls, and it does not represent present-day risk. It may rely on incomplete or unverified public reports and can change as new information emerges. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company named here. Provided for general awareness only — not legal, financial, or security advice. How the rating is calculated →
