Ransomware victim disclosure
← All victimsExcel Healthcare Receivable Management &Consulting
Claimed by Akira · listed 2 months ago
Status timeline
- ListedMar 31, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Mar 31, 2026
About the victim
AI dossier — public-source company profileExcel Healthcare Receivable Management & Consulting is a specialized firm providing revenue cycle management and consulting services to healthcare clients including hospitals and medical practices of all sizes. Their offerings include accounts receivable management, insurance follow-up, denial auditing, and workflow optimization consulting aimed at improving cash flow and operational efficiency.
- Industry
- Healthcare Revenue Cycle Management & Consulting
Attack summary
Severity: critical — The victim operates in healthcare revenue cycle management, meaning the exfiltrated data almost certainly contains regulated PII and potentially PHI (patient financial and insurance data) at scale across multiple hospital and practice clients; 54 GB of exfiltrated data with imminent publication constitutes a critical disclosure.Akira claims to have exfiltrated approximately 54 GB of corporate data and states it will be published imminently; the data allegedly includes employee and customer personal information, project information, and contracts and agreements.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal information
- Customer personal information
- Project information
- Contracts and agreements
- Accounts receivable records
- Insurance and denial audit data
What the group claims
Excel Healthcare is a specialized firm focusing on revenue cycle management and consulting services for healthcare professionals, including hospitals and medical practices of all sizes. They offe r comprehensive services such as accounts receivable management, insurance follow-up, denial auditing, and consulting on workflow optimization to enhance cash flow and operational efficiency. We will upload 54gb of corporate data soon. Employee and customer personal information, project information, lots of contracts and agreements, etc.
Source
Indexed 2 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

