SBC Global, Bitfinex, Coinmom, and Rutgers University Part 2 Listed by Flocker Ransomware Group
If you are a customer of SBC Global, Bitfinex, Coinmom, and Rutgers, here’s what is being claimed, and what it would mean for you.
the four victims of our attack – SBC Global, Bitfinex, Coinmom, and Rutgers University. You refused to pay, and now […]
— from Flocker’s own leak-site posting. This is the group’s claim, quoted verbatim; it is not GalaxyWarden’s reporting and has not been independently verified.
On May 5, 2024, the Flocker ransomware group publicly listed four organizations on its leak site, including Rutgers University, declaring that the victims had refused to pay and would now face publication of stolen internal files.
Watch SBC Global, Bitfinex, Coinmom, and Rutgers
Get alerted the next time SBC Global, Bitfinex, Coinmom, and Rutgers files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about SBC Global, Bitfinex, Coinmom, and Rutgers’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Primary Disclosure Details
The Flocker leak site posting explicitly names Rutgers University alongside SBC Global, Bitfinex, and Coinmom as the four victims of its ransomware attack. The group states that internal files were exfiltrated and warns that the data will be released because ransom demands were not met. The disclosure does not quantify how many records were taken, list specific file types beyond “internal files,” or provide a firm publication deadline. Public reporting on the incident draws directly from the onion-site listing hosted at the address indexed by ransomware.live.
Why This Matters for You and Your Family
When a major public university suffers a ransomware breach, the personal information of students, alumni, faculty, staff, and their families is often caught in the net. Even though the Flocker listing does not detail exact data types, university systems routinely hold Social Security numbers, dates of birth, addresses, financial aid records, health information, and academic transcripts. Once those records appear on a leak site, they become raw material for identity theft, tax fraud, and phishing campaigns aimed at you or your children. The breach therefore carries direct consequences for any household connected to Rutgers through enrollment, employment, or dependent status.
- Every indexed leak tied to your address — all of them, named and dated
- What this kind of incident typically exposes
- A ten-minute lock list written for this kind of organisation
Doxxing and Identity-Chain Risks
Exposed university files frequently contain email addresses, usernames, and directory listings that link real identities to gaming handles, social-media accounts, and family relationships. Attackers chain these fragments together: a leaked Rutgers email leads to a reused password on a gaming platform, which yields chat logs containing home addresses or phone numbers. The result is a doxxing cascade that can expose your family’s physical location, children’s names and ages, and financial details. Credential leaks like this one routinely fuel account takeovers on Steam, Roblox, Discord, and other services popular with students and siblings.
Flocker Ransomware Group Track Record
Public reporting attributes the emergence of Flocker to late 2023. The group has targeted a mix of corporations, cryptocurrency platforms, and educational institutions using double-extortion tactics: encrypt victim systems, exfiltrate sensitive files, then threaten public release unless payment is made. Notable prior victims listed on leak sites include smaller financial services firms and regional healthcare providers. Flocker’s typical playbook begins with phishing or exploited remote-access tools for initial access, followed by lateral movement to harvest internal shares, then exfiltration over several days before encryption. The group maintains its own leak portal rather than relying exclusively on third-party data brokers, a pattern consistent with mid-tier ransomware operators seeking to control their narrative and pressure victims directly.
What to do
- Run a DoxxScan to map every link between your Rutgers-related emails, usernames, phone numbers, and real-world identity so you can see the full exposure chain.
- Rotate any password used at Rutgers anywhere else it is reused, and switch to 2FA through an authenticator app rather than SMS.
- Enable continuous DoxxScan monitoring across 13.1B+ breach records and 100+ platforms so the next leak that touches your family is caught in hours, not months.
- Cover the household with DoxxScan family protection that extends to dependents and children’s gaming accounts which often chain back to the same university-linked addresses and credentials.
- Let remediation specialists handle data-broker takedown requests and opt-out processes on your behalf while you focus on securing accounts.
The incident underscores that ransomware operators continue to treat universities as high-value targets whose compromise ripples outward to thousands of ordinary families. Starting a DoxxScan trial gives you continuous monitoring across 13.1B+ breach records and 100+ platforms, AI-powered identity-chain mapping that connects handles to real identities, hands-on remediation by specialists, and household coverage that includes children’s gaming accounts at risk from credential-stuffing attacks. Source: Flocker leak site via ransomware.live
What the free scan actually returns
Found on people-search siteswe remove these
These listings are live, public, and legal to remove — and removing them is what we do.
Found in breach recordsverifiedreported — unverified
Each record is labeled: confirmed breach data, or an attacker’s claim no one has verified.
Leaked data cannot be deleted from the internet — anyone claiming otherwise is lying. Broker listings can be removed. We do the second, and show you exactly what to fix from the first.
Report details & sourcing
Related breaches
Quy Nhon University Listed by Vexy Ransomware Ransomware Group
Quy Nhon University (QNU) is a public, multidisciplinary university located in Quy Nhon City, Binh D…
Inter (Venezuela's largest internet provider) Listed by N0n Ransomware Group
Telecommunications / ISP · Venezuela | Subscriber connection records: 15,300,000+ entries, tens of t…
Universitt Hamburg Listed by Panzer Ransomware Group
Universität Hamburg is the largest research and educational institution in Northern Germany, with ov…