Ransomware victim disclosure
← All victimsProHealth Medical Group Pte Ltd
listed as www.prohealth.sg · Claimed by Krybit · listed 4 hours ago
Status timeline
- ListedAug 2, 2026
- Data leakeddate unknown
At a glance
- Group
- Krybit
- Status
- Data leaked
- Country
- Singapore
- Sector
- Healthcare
- Listed on leak site
- Aug 2, 2026
About the victim
AI dossier — public-source company profileProHealth Medical Group is a Singaporean private primary healthcare provider founded in the 1990s, operating multiple clinics offering family medicine, health screening packages, vaccinations, and preventive care services. The group aims to be a fully integrated healthcare provider serving medical and paramedical needs.
- Industry
- Private Primary Healthcare
- Founded
- 1990
Attack summary
Severity: high — Healthcare provider compromised with confirmed data exfiltration. Patient personal information and medical records are regulated sensitive data under Singapore's PDPA and constitute PII at scale in a healthcare context, warranting high severity despite no ransom demand or specific proof count disclosed.The krybit ransomware group claims to have compromised ProHealth Medical Group. The leak post indicates data exfiltration, with the group publishing data and marking the disclosure status as 'data_published'.
Data the group says was taken
AI dossier — extracted from the leak post- Patient personal information
- Medical records
- Healthcare provider data
- Clinic operational data
What the group claims
ProHealth Medical Group Pte Ltd is a Singaporean private primary healthcare group founded in the 1990s, headquartered at...
Sources
Source
Indexed 4 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

