Ransomware victim disclosure
← All victimsNortheast Georgia Federally Qualified Health Center
Claimed by CMD ORGANIZATION · listed 2 hours ago
Status timeline
- ListedAug 21, 2026
Current state: Listed for ransom
At a glance
- Group
- CMD ORGANIZATION
- Status
- Listed for ransom
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Aug 21, 2026
- Data size
- 285 GB
About the victim
AI dossier — public-source company profileNortheast Georgia Federally Qualified Health Center has served the northeast Georgia region since 1976, providing sliding-fee-scale medical services to uninsured and underinsured patients regardless of ability to pay. The organization employs multilingual staff to serve diverse communities and operates as a federally qualified health center.
- Industry
- Healthcare - Federally Qualified Health Center
- Founded
- 1976
Attack summary
Severity: critical — Federally qualified health center handling sensitive patient medical records and PII at scale; healthcare data is heavily regulated (HIPAA) and exfiltration of 285 GB from such an entity poses significant risk to patients and regulatory compliance.CMD ORGANIZATION claims to have exfiltrated 285 GB of data from the health center. The group has listed the victim on a leak site but the post does not specify what data categories were accessed or whether encryption occurred.
Data the group says was taken
AI dossier — extracted from the leak post- Patient medical records
- Personal identifiable information
- Financial records
What the group claims
A federally qualified health center serving northeast Georgia since 1976, offering sliding fee scale services to uninsured and underinsured patients. No one is denied services due to lack of income or insurance status. Many employees are bi-lingual.
The leak post
captured from the group's siteIT Security organization est. 2026. We have proudly been serving northeast Georgia since 1976. As a federally qualified health center, we are able to offer uninsured and underinsured patients a sliding fee scale. No one is denied services due to lack of income or insurance status. Many of our employees are bi-lingual, eliminating the language barrier and providing a more comfortable and welcoming environment for all cultures. We have 285 GB of downloaded data. ## [Stewart Belland & Associates Inc.](https://stewartbellandassociates.ca) Stewart Belland & Associates Inc. (SBA) is a Civil Enforcement Agency licensed by the Province of Alberta. Operating since 1996, under the Alberta Civil Enforcement Act and Regulations, as a Civil Enforcement Agency we are legislated to enforce Civil Warrants. SBA retains the services of Provincial Licensed Bailiffs, who follow a compressive Rule of Conduct, in performing their functions throughout all jurisdictions within the Province of Alberta. We have 296 GB of downloaded data. Contact Group is a proudly Tasmanian company specializing in building services and multi-technology solutions. They offer award-winning services across various divisio…
Screenshot of the leak post

Sources
Source
Indexed 2 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

