Ransomware victim disclosure
← All victimsSinging River Health System
Claimed by anubis · listed 5 hours ago
Status timeline
- Listed
Jun 3, 2026
- Data leaked
At a glance
- Group
- anubis
- Status
- Data leaked
- Country
- US
- Sector
- Healthcare
- Listed on leak site
- Jun 3, 2026
About the victim
AI dossier — public-source company profileSinging River Health System is a mission-driven healthcare provider and one of the largest employers on the Mississippi Gulf Coast. It operates as a health services organization handling patient medical records, insurance information, and personal data at scale.
- Industry
- Healthcare Services
Attack summary
Severity: critical — Confirmed exfiltration of regulated healthcare data (HIPAA-protected PHI) at organization-wide scale, including medical records, identity documents, and insurance information. This is the second major breach in two years, indicating systemic security failures in a healthcare provider.The Anubis group claims to have exfiltrated patient data from Singing River Health System, including personal information, identity documents, medical records, insurance information, and photographs. This represents a second major breach incident for the organization within two years.
Data the group says was taken
AI dossier — extracted from the leak post- personal information
- contact details
- identity documents
- medical records
- insurance information
- patient photographs
What the group claims
New data breach at a large health system provider.
The leak post
captured from the group's siteis both a mission-driven provider of health services and one of the largest employers on the Mississippi Gulf Coast. The company has been through this before. [In 2023, it disclosed a data breach affecting approximately 895,000 customers](https://www.hipaajournal.com/singing-river-health-system-895000-breach/) — a serious incident by any measure. Apparently, that experience changed very little. [Two years later, the company is once again reporting a data breach](https://www.hipaajournal.com/singing-river-health-system-cyberattack/). This one is nowhere near the scale of the previous incident, but that is not the point. The point is that this is a healthcare company handling vast amounts of sensitive medical information. Having already dealt with the fallout of a major breach, it had every reason to take cybersecurity seriously. Instead, the company is once again notifying people that their data has been exposed. Overall, the company later provided a[ fairly detailed breakdown of the breach](https://singingriverhealthsystem.com/2026/05/notice-of-data-security-incident/), explaining whose data was affected and what types of information were exposed. In many ways, it did most of our w…
Sources
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
