Ransomware victim disclosure
← All victimsAerodiagnostics
Claimed by INC Ransom · listed 18 hours ago
Status timeline
- Listed
Jun 6, 2026
- Data leaked
At a glance
- Group
- INC Ransom
- Status
- Data leaked
- Country
- US
- Sector
- Healthcare/Laboratory
- Listed on leak site
- Jun 6, 2026
- Data size
- 20 GB
- Records
- 20 files
About the victim
AI dossier — public-source company profileAerodiagnostics is a healthcare laboratory company operating in the United States. No further public information is available to confirm specific operations, scale, or location.
- Industry
- Healthcare/Laboratory Diagnostics
Attack summary
Severity: high — Healthcare sector with confirmed 20 GB data exfiltration constitutes high severity due to likelihood of regulated health information exposure (HIPAA-protected data, patient records, lab results). Operational disruption to a diagnostic provider impacts patient care.INC Ransom claims to have exfiltrated approximately 20 GB of data from Aerodiagnostics. The specific data categories targeted are not detailed in the available leak post excerpt.
Data the group says was taken
AI dossier — extracted from the leak post- Patient or laboratory records
- Healthcare business data
- Operational files
What the group claims
Aerodiagnostics, LLC is a Massachusetts-based laboratory specializing in advanced diagnostic testing.
The leak post
captured from the group's site```
{"type":true,"message":"Success: got announcements.","payload":{"length":722,"announcements":[{"_id":"6a232c515ae71db30c46b0a3","company":{"company_name":"obrieneng.com","country":"US","revenue":20000000},"categories":["Proof"],"description":["contract%20nda%20confidential%20%20%20gov%5Cdot%5Cmilitary%5Cva%5Csam.gov%20other"],"logo":"6a232c515ae71db30c46b089","proof":["6a232c515ae71db30c46b072","6a232c515ae71db30c46b073","6a232c515ae71db30c46b074","6a232c515ae71db30c46b075","6a232c515ae71db30c46b076","6a232c515ae71db30c46b077","6a232c515ae71db30c46b078","6a232c515ae71db30c46b079","6a232c515ae71db30c46b07a","6a232c515ae71db30c46b07b","6a232c515ae71db30c46b07c","6a232c515ae71db30c46b07d","6a232c515ae71db30c46b07e","6a232c515ae71db30c46b07f","6a232c515ae71db30c46b080","6a232c515ae71db30c46b081","6a232c515ae71db30c46b082","6a232c515ae71db30c46b083","6a232c515ae71db30c46b084","6a232c515ae71db30c46b085","6a232c515ae71db30c46b086","6a232c515ae71db30c46b087","6a232c515ae71db30c46b088"],"visits":262,"leakAt":-58637220540000,"createdAt":1780690001957,"updatedAt":1780690001957,"__v":0},{"_id":"6a21bd57d152110a6a4b4f68","company":{"company_name":"Stuga%20Machinery","country":"GB","revenue"…Screenshot of the leak post

Sources
Source
Indexed 18 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
