Ransomware victim disclosure
← All victimsSonitor Technologies
Claimed by Pear · listed 7 hours ago
Status timeline
- ListedJul 30, 2026
- Data leakeddate unknown
At a glance
- Group
- Pear
- Status
- Data leaked
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Jul 30, 2026
About the victim
AI dossier — public-source company profileSonitor Technologies is a healthcare-focused software and technology company specializing in real-time location systems (RTLS) using ultrasound technology. The company serves 300+ hospitals and clinics globally with solutions for asset tracking, staff safety, patient flow optimization, and compliance monitoring. Operating for 25+ years in healthcare RTLS with 1M+ deployed tags.
- Industry
- Healthcare Technology – Real-Time Location Systems (RTLS)
Attack summary
Severity: medium — Data has been published by the ransomware operator and the victim is confirmed as a healthcare technology company handling sensitive operational systems deployed in hospitals. However, the specific nature and scale of exfiltrated data cannot be determined from the available leak post excerpt. The lack of detail about proof files or data inventory limits confidence in severity assessment, but the healthcare sector and operational technology context warrant medium rating.The ransomware group 'pear' claims to have breached Sonitor Technologies and published data, though the leak post excerpt provided contains only a generic marketing phrase with no specific details about what data was exfiltrated or the scope of the attack.
Data the group says was taken
AI dossier — extracted from the leak post- Company platform/technology documentation
- Unspecified customer or operational data
What the group claims
Sonitor’s platform and technologies deliver the accurate and reliable data required to optimize care delivery
Sources
Source
Indexed 7 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

