Ransomware victim disclosure
← All victimsFederally Qualified Health Center (Northeast Georgia)
Claimed by CMD ORGANIZATION · listed 4 hours ago
Status timeline
- ListedAug 31, 2026
Current state: Listed for ransom
At a glance
- Group
- CMD ORGANIZATION
- Status
- Listed for ransom
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Aug 31, 2026
- Data size
- 285 GB
About the victim
AI dossier — public-source company profileA federally qualified health center operating in northeast Georgia since 1976, providing sliding-scale healthcare services to uninsured and underinsured patients regardless of income or insurance status. The organization employs bilingual staff to serve diverse patient populations.
- Industry
- Healthcare – Federally Qualified Health Center
- Address
- Northeast Georgia, US
- Founded
- 1976
Attack summary
Severity: critical — Federally qualified health center operating in the US; exfiltration of 285 GB of data almost certainly includes protected health information (PHI) and personally identifiable information (PII) at scale, triggering HIPAA and state privacy regulations. Healthcare data is regulated and sensitive.CMD ORGANIZATION claims to have exfiltrated 285 GB of data from the health center. The post does not specify what data was taken or whether encryption occurred.
Data the group says was taken
AI dossier — extracted from the leak post- Patient health records
- Personal identifiable information
- Insurance and financial records
What the group claims
A federally qualified health center serving northeast Georgia since 1976, offering sliding fee scale for uninsured and underinsured patients. No one is denied services due to lack of income or insurance status. Many employees are bi-lingual.
The leak post
captured from the group's siteIT Security organization est. 2026. We have proudly been serving northeast Georgia since 1976. As a federally qualified health center, we are able to offer uninsured and underinsured patients a sliding fee scale. No one is denied services due to lack of income or insurance status. Many of our employees are bi-lingual, eliminating the language barrier and providing a more comfortable and welcoming environment for all cultures. We have 285 GB of downloaded data. ## [Stewart Belland & Associates Inc.](https://stewartbellandassociates.ca) Stewart Belland & Associates Inc. (SBA) is a Civil Enforcement Agency licensed by the Province of Alberta. Operating since 1996, under the Alberta Civil Enforcement Act and Regulations, as a Civil Enforcement Agency we are legislated to enforce Civil Warrants. SBA retains the services of Provincial Licensed Bailiffs, who follow a compressive Rule of Conduct, in performing their functions throughout all jurisdictions within the Province of Alberta. We have 296 GB of downloaded data. Contact Group is a proudly Tasmanian company specializing in building services and multi-technology solutions. They offer award-winning services across various divisio…
Screenshot of the leak post

Sources
Source
Indexed 4 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

