Natco Home Group
Added Aug 17, 2026
Natco Home Group — a fourth-generation, family-owned home furnishings manufacturer headquartered in West Warwick, Rhode Island, with ~800 employees, ~$100M annual revenue, and facilities across seven US states. The exfiltrated dataset spans the company's entire corporate history and includes: Social Security numbers in plaintext for 100–120 legacy employees dating back to 1979 in an unencrypted PayUSA payroll database, plus 10 years of ADP payroll data (2017–2026) covering 700–1,000 current and former employees — pay stubs, W-2s, W-4s, 401k records, drug test results, background checks, and medical leave records. 15 SonicWall firewall configuration exports covering every Natco facility across Rhode Island, Maine, Georgia, California, New York, Massachusetts, and Illinois — including admin passwords, VPN pre-shared keys, NAT rules, and ACLs. Combined with an HP/H3C switch configuration and a 149 MB Dell iDRAC server-management dump, this is a complete network security blueprint. A spreadsheet called "ALL PASSWORDS.xlsx" — every customer and carrier portal credential (Walmart, Costco, Home Depot, FedEx, and more) in a single file on a shared drive. Hardcoded SQL Server SA password in application source code — the database superuser credential baked into a production application's config file and compiled binary, requiring a code change to rotate. 35+ GB of executive email archives (Outlook PST files), HR investigation files, EEOC documentation, and employee disciplinary records. Years of divisional financial statements, income tax records, customer credit data for major retailers, 18 years of bad-debt reserve calculations, and acquisition-related materials.
Organization Details
Natco Home Group
natcohome.com
🇺🇸 US
Retail & E-Commerce
Leak Data
149 MB
Aug 17, 2026
Published
Aug 17, 2026
http://u6lieui2dakbctcjea2bz4r4q32r7t36nwljovqbv7mxs6o2smgxixid.onion/blog/natco-home-group-77b27d0dThreat Group
aurora
ransomware group
View full group profile →