Ransomware victim disclosure
← All victimsASL 1 Avezzano Sulmona L'Aquila
listed as ASL 1 - Avezzano Sulmona L'Aquila *first 10gb upload* · Claimed by Monti · listed 3 years ago
Status timeline
- ListedMay 8, 2023
- Data leakeddate unknown
At a glance
- Group
- Monti
- Status
- Data leaked
- Country
- Italy
- Sector
- Healthcare
- Listed on leak site
- May 8, 2023
About the victim
AI dossier — public-source company profileASL 1 Avezzano Sulmona L'Aquila is a Local Health Authority (Azienda Sanitaria Locale) operating under Italy's National Health Service (SSN) in the Abruzzo region. It provides public healthcare services across the territories of Avezzano, Sulmona, and L'Aquila, including hospital care, outpatient services, and community health programs. As a public health entity it manages sensitive medical and personal data for a large patient population.
- Industry
- Public Healthcare / National Health Service
- Address
- Via Saragat, 67100 L'Aquila, Abruzzo, Italy
- Employees
- 1000+
Attack summary
Severity: critical — The victim is a public healthcare authority holding large volumes of regulated medical and personal data (patient records, health data). Data has been confirmed published (10 GB initial upload), constituting exfiltration of sensitive health and PII data at scale, meeting the threshold for critical severity under GDPR-sensitive and medical data categories.The Monti ransomware group claims to have exfiltrated data from ASL 1 Avezzano Sulmona L'Aquila, publishing an initial tranche of 10 GB of data as proof of the breach. The post indicates data has been published, suggesting exfiltration with partial disclosure and likely threat of further releases.
Data the group says was taken
AI dossier — extracted from the leak post- Patient medical records
- Personal identifiable information (PII)
- Healthcare administrative data
- Staff personnel records
- Internal institutional documents
What the group claims
asl1abruzzo.it Portale istituzionale dell'Azienda Sanitaria Locale 1 Avezzano Sulmona L'Aquila.
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

