Ransomware victim disclosure
← All victimsFamily Medical Associates of Raleigh
Claimed by Genesis · listed 3 months ago
Status timeline
- ListedJun 3, 2026
- Data leakeddate unknown
At a glance
- Group
- Genesis
- Status
- Data leaked
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Jun 3, 2026
About the victim
AI dossier — public-source company profileFamily Medical Associates of Raleigh is a healthcare organization operating in Raleigh, North Carolina. No additional operational details are publicly available from the provided sources.
- Industry
- Healthcare Services
Attack summary
Severity: medium — Healthcare sector breach with data published, but lack of specific proof artifacts or detailed inventory in the available post excerpt limits confirmation of scale and sensitivity. Healthcare data is inherently regulated (HIPAA), warranting medium minimum severity.Genesis claims to have breached Family Medical Associates of Raleigh and published data. The specific nature of the breach (encryption, exfiltration, or both) and the scope of affected data are not detailed in the available leak post excerpt.
What the group claims
A healthcare organization
The leak post
captured from the group's siteFamily Medical Associates of Raleigh is a medicine practice dedicated to providing primary healthcare services to patients. Their services include routine check-ups, immunizations, chronic disease management, and telehealth visits, catering to individuals and families in the Raleigh area. ``` - Healthcare Data. - Personal Data. - Certification Data. - Lists of patients. - Clinical Data. - Accounting Data. - Operational Data. - Financial Data. - Network Users Folders. - Data from company fileserver. ``` [Download The List of Company Files](http://genesis6ixpb5mcy4kudybtw5op2wqlrkocfogbnenz3c647ibqixiad.onion/download/56a7b33d42a266827a91.txt)
Screenshot of the leak post

Sources
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

