Ransomware victim disclosure
← All victimsGastroenterology & Hepatology of CNY[FULL_LEAK]
Claimed by exitium · listed 4 days ago
Status timeline
- Listed
May 16, 2026
- Data leaked
At a glance
- Group
- exitium
- Status
- Data leaked
- Country
- US
- Sector
- Healthcare
- Listed on leak site
- May 16, 2026
About the victim
AI dossier — public-source company profileGastroenterology & Hepatology of CNY, PC (gandhofcny.com) is a gastroenterology and hepatology medical practice located in Syracuse, New York. It operates alongside the Digestive Disease Center of CNY, LLC (ddcofcny.com), an AAAHC-accredited endoscopy center. The practice serves a large regional patient population in Central New York.
- Industry
- Gastroenterology & Hepatology Medical Practice
- Address
- Syracuse, New York, USA
Attack summary
Severity: critical — Confirmed exfiltration and full public leak of highly regulated medical PII at large scale: 167,303 patients including SSNs, full contact details, sensitive diagnostic categories (mental health, STIs, substance abuse, cancer), pathology narratives, and medication records — all categories protected under HIPAA. The data has already been published, maximising harm.The group claims to have exfiltrated the full internal database of the practice, including records for 167,303 patients with highly sensitive medical, demographic, and financial identifiers; the data has been publicly leaked in full after a ransom demand was not met.
Data the group says was taken
AI dossier — extracted from the leak post- 167,303 patient records
- 124,761 Social Security Numbers (SSN)
- 166,402 patient addresses
- 164,296 patient phone numbers
- 85,318 patient email addresses
- 1,093,863 ICD-10 diagnoses
- 1,547,142 medication records
- 186,246 pathology specimens with narrative reports
- Mental health diagnoses (43,902 patients)
- Substance/alcohol use diagnoses (5,111 patients)
- STI diagnoses (2,779 patients)
- Cancer diagnoses (2,708 patients)
- Hepatitis C diagnoses (1,906 patients)
- Records of notable individuals (politicians, public figures, businesspeople)
What the group claims
We decided to leak all patient records. Enjoy)
The leak post
captured from the group's siteWebsite: fannincad.org Zoominfo: https://www.zoominfo.com/c/fannin-central-appraisal-district/1117264519 Exfiltrated: 400 GB of data Website: marborges.com Zoominfo: https://www.zoominfo.com/c/marborges-agroindustria/547271801 Company in Brasil with a bad security. Website: mhe.com.tw Zoominfo: https://www.zoominfo.com/c/ming-hwei-energy-co-ltd/446006038 A small private B2B firm (11–50 staff, <$5M revenue), part of a Taiwanese fastener conglomerate. Manufacturer of solar cells in a niche where Taiwanese firms are consistently undercut by Chinese pricing. Their infra encrypted. Website: gandhofcny.com Zoominfo: https://www.zoominfo.com/c/gastroenterology--hepatology-of-cny-pc/346091487 Data sample, whole internal data will be sold if they wouldn't pay ransom. Also Digestive Disease Center of CNY, LLC (ddcofcny.com) GI practice + AAAHC-accredited endoscopy center. Syracuse, New York, USA. Full database for sale — 167,303 patients, 124,761 SSN, 49,798 with sensitive diagnoses: - 167,303 patients — 124,761 with SSN, 166,402 (99%) with address, 164,296 (98%) with phone, 85,318 (51%) with email - 1,093,863 diagnoses (ICD-10), 1,547,142 medications, 186,246 pathology specimens with narrat…
Sources
Source
Indexed 4 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
