Ransomware victim disclosure
← All victimsFundación Teletón Honduras
listed as teleton.org.hn · Claimed by Lockbit5 · listed 5 hours ago
Status timeline
- ListedJun 20, 2026
- Data leakeddate unknown
At a glance
- Group
- Lockbit5
- Status
- Data leaked
- Country
- Honduras
- Sector
- Healthcare
- Listed on leak site
- Jun 20, 2026
About the victim
AI dossier — public-source company profileFundación Teletón Honduras is a leading private non-profit rehabilitation institution established in 1987. The organization operates multiple Centers for Comprehensive Rehabilitation and Training (CRIT) and specialized centers across Honduras, providing medical, therapeutic, and educational services including physical therapy, occupational therapy, speech therapy, orthopedic prosthetics, and social support programs.
- Industry
- Healthcare & Rehabilitation Services
- Address
- Tegucigalpa, Distrito Central, Honduras
- Founded
- 1987
Attack summary
Severity: high — Healthcare institution with confirmed data publication; exfiltration of patient medical records and PII represents significant regulatory and privacy breach affecting vulnerable populations including children in rehabilitation programs.LockBit5 claims to have compromised Fundación Teletón Honduras. The group post indicates data exfiltration, though specific details about the scope and nature of data are not fully disclosed in the truncated leak post.
Data the group says was taken
AI dossier — extracted from the leak post- patient medical records
- personal health information
- organizational/operational data
What the group claims
We are a leading private non-profit institution in the field of comprehensive rehabilitation. With t...
Sources
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

