Ransomware victim disclosure
← All victimsInterim HealthCare (Oklahoma and Tulsa)
Claimed by Genesis · listed 7 days ago
Status timeline
- ListedAug 10, 2026
- Data leakeddate unknown
At a glance
- Group
- Genesis
- Status
- Data leaked
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Aug 10, 2026
About the victim
AI dossier — public-source company profileInterim HealthCare is a locally owned and operated home healthcare agency and medical staffing provider serving Oklahoma and Tulsa. Part of a national network established in 1966 with 300+ locations, the company provides personalized home health services including personal care, skilled nursing, hospice, and medical staffing, emphasizing patient-centered care and holistic well-being.
- Industry
- Home Healthcare & Medical Staffing
- Founded
- 1966
Attack summary
Severity: medium — Healthcare sector typically involves sensitive PII and regulated data (HIPAA). However, the leak post provides minimal detail—no proof files shown, no data types confirmed, and no operational impact stated. Classification is conservative pending full disclosure.The Genesis group claims to have breached Interim HealthCare of Oklahoma and Tulsa. The post indicates data breach details and affected companies will be disclosed soon, but no specific information about exfiltration, encryption, or data types is currently provided.
Data the group says was taken
AI dossier — extracted from the leak post- patient records
- business data
What the group claims
A healthcare organization dealing with elderly care services
The leak post
captured from the group's site**Full details about the breach, a list of affected companies, the file tree, and the data itself will be published in:** Interim HealthCare of Oklahoma and Tulsa. A healthcare organization dealing with Elderly Care Services ``` Data breach details will be disclosed soon. ```
Screenshot of the leak post

Sources
Source
Indexed 7 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

