On February 11, 2025, the University of Notre Dame Australia appeared on the leak site of the fog ransomware group with 62 GB of internal files listed for public download after the university did not meet the attackers’ demands.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
What Public Reporting Shows
Public reporting indicates the fog group exfiltrated 62 GB of internal documents from nd.edu.au. The data was uploaded to their onion leak site and remains available for anyone to download. No confirmed list of specific records has been published, but ransomware incidents of this type typically include employee records, student information, financial documents, contracts, and internal emails. The university has not released an official statement detailing the exact contents or the number of people affected.
Why This Matters for You and Your Family
Universities hold personal information on students, alumni, staff, and sometimes their family members. If your name, address, date of birth, phone number, email, or government ID appeared in any Notre Dame Australia record, that information may now be in the hands of criminals. 62 GB is large enough to contain thousands of records. Once posted on a ransomware leak site, the data spreads quickly to other criminals who combine it with information from earlier breaches. Even if you never attended the university yourself, a spouse, child, or parent who did could have exposed your shared address or phone number.
The Doxxing and Identity-Chain Risk
Ransomware leaks rarely stop at one dataset. Criminals use the exposed emails, usernames, and passwords to test other accounts you own. A single university breach can link your work email to a personal account, a child’s gaming username, or a family member’s social-media handle. This creates an identity chain that lets attackers build a detailed profile for identity theft, targeted phishing, or full doxxing. Gaming accounts belonging to children are especially vulnerable because kids often reuse simple passwords or email addresses tied to family data. Public reporting shows these credential leaks frequently cascade into account takeovers within days or weeks.