Ransomware victim disclosure
← All victimsHealthDaq
Claimed by kazu · listed 4 days ago
Status timeline
- Listed
May 17, 2026
Current state: Listed for ransom
At a glance
- Group
- kazu
- Status
- Listed for ransom
- Country
- Ireland
- Sector
- Healthcare
- Listed on leak site
- May 17, 2026
About the victim
AI dossier — public-source company profileHealthDaq is a Dublin-based healthcare recruitment platform operating in Ireland. The company appears to facilitate the matching or placement of healthcare professionals, functioning as a digital marketplace or data-driven platform within the healthcare staffing sector. No further detail is available from a public site.
- Industry
- Healthcare Recruitment & Staffing
- Address
- Dublin, Ireland
Attack summary
Severity: high — HealthDaq operates in healthcare recruitment, meaning exfiltrated data likely includes sensitive personal and professional information (CVs, identity documents, health credentials) about healthcare workers and possibly patients or clients — regulated personal data at meaningful scale. No proof has been published yet, but the nature of the platform makes potential exposure high-severity.The group 'kazu' claims a data breach against HealthDaq, asserting exfiltration of data from the Dublin-based healthcare recruitment platform. No ransom amount, data volume, or proof files are specified in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Healthcare recruitment platform data
- Candidate/professional records (inferred)
- Client/employer records (inferred)
What the group claims
Dublin based healthcare recruitment platform
The leak post
captured from the group's siteA847 8A8C E2A4 3B58 FB12 D678 3BA4 C334 C85C EE56 HealthDaq Dublin based healthcare recruitment platform Data Breach Spain - HT Médica Data breach Peru - Natclar (S.G. Natclar S.A.C.) SA - Gauteng Provincial Government Statistics South Africa – Official National Data and Insights Portal
Sources
Source
Indexed 4 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
