Ransomware victim disclosure
← All victimsAhenk Laboratuvarı
listed as AHENK lab · Claimed by Deadlock · listed 19 hours ago
Status timeline
- ListedJul 28, 2026
- Data leakeddate unknown
At a glance
- Group
- Deadlock
- Status
- Data leaked
- Country
- Türkiye
- Sector
- Technology
- Listed on leak site
- Jul 28, 2026
About the victim
AI dossier — public-source company profileAhenk Laboratuvarı is an ISO 15189-accredited medical laboratory based in Istanbul-Şişli, Turkey, founded in 1998. The company provides clinical biochemistry, microbiology, pathology, and genetics testing services to both individual and corporate clients, with international collaboration including partnerships with Limbach Laboratories in Germany.
- Industry
- Medical Laboratory Services
- Address
- Istanbul-Şişli, Turkey
- Founded
- 1998
Attack summary
Severity: high — Medical laboratory holding patient test results, genetic data, and health information constitutes regulated sensitive data (PII at scale, health/medical records). ISO 15189 accreditation indicates handling of protected health data subject to Turkish KVKK regulations. Confirmed data publication by ransomware group elevates to high severity despite lack of specific proof count details in the truncated post.The Deadlock group claims to have attacked Ahenk Laboratuvarı and published data. The post does not specify whether data was exfiltrated, encrypted, or both, nor does it detail what specific data categories are at risk.
Data the group says was taken
AI dossier — extracted from the leak post- Patient medical records
- Test results
- Personal health information
- Corporate client records
What the group claims
Ahenk Laboratuvarı is an ISO 15189-accredited medical laboratory in Turkey, founded in 1998 and located in Istanbul-Şişli. The company offers services in clinical biochemistry, microbiology, pathology, and genetics, and collaborates with Limbach Laboratories in Germany.
Sources
- Victim sitewww.ahenklab.com.tr
Source
Indexed 19 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

