Ransomware victim disclosure
← All victimsASL 1 - Avezzano Sulmona L'Aquila *UPDATE*
Claimed by Monti · listed 3 years ago
Status timeline
- ListedMay 6, 2023
- Data leakeddate unknown
At a glance
- Group
- Monti
- Status
- Data leaked
- Country
- Italy
- Sector
- Healthcare
- Listed on leak site
- May 6, 2023
About the victim
AI dossier — public-source company profileASL 1 Avezzano Sulmona L'Aquila is a Local Health Authority (Azienda Sanitaria Locale) serving the L'Aquila province in the Abruzzo region of Italy. It operates hospitals, clinics, and community health services across the municipalities of Avezzano, Sulmona, and L'Aquila. As part of Italy's Servizio Sanitario Nazionale, it handles medical records, patient care, and public health administration for a large geographic area.
- Industry
- Public Healthcare / National Health Service (NHS Italy)
- Address
- Via Saragat, 67051 Avezzano (AQ), Abruzzo, Italy
- Employees
- 1000-5000
Attack summary
Severity: critical — The victim is a public healthcare authority handling large volumes of regulated sensitive data including patient PII and medical records. The disclosure status is 'data_published', confirming actual exfiltration and public release of likely GDPR-protected and health-regulated data at scale.The Monti ransomware group claims to have attacked ASL 1 Avezzano Sulmona L'Aquila and has published data ('data_published' status), indicating confirmed exfiltration and public disclosure of stolen files. Given the healthcare context, the data at stake likely includes patient records, medical data, and administrative information.
Data the group says was taken
AI dossier — extracted from the leak post- Patient medical records
- Personal health information (PHI)
- Administrative documents
- Staff personnel data
- Financial and billing records
- Internal institutional communications
What the group claims
asl1abruzzo.it Portale istituzionale dell'Azienda Sanitaria Locale 1 Avezzano Sulmona L'Aquila.
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

