Ransomware victim disclosure
← All victimssermo.com
Claimed by Blackbasta · listed 2 years ago
Status timeline
- ListedApr 9, 2024
- Data leakeddate unknown
At a glance
- Group
- Blackbasta
- Status
- Data leaked
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Apr 9, 2024
About the victim
AI dossier — public-source company profileSermo is a global physician-first social networking platform and community for licensed healthcare professionals. It connects over 1.3 million healthcare professionals (primarily physicians) across 150 countries, enabling peer communication, paid medical surveys, drug ratings, case consultations, and continuing medical education. The platform generated over $25 million in physician survey compensation in the preceding year.
- Industry
- Healthcare Technology & Physician Networking
- Address
- 200 Park Ave S, New York City, New York, 10003, United States
Attack summary
Severity: critical — Exfiltration of ~700 GB including confirmed personal data at scale (1.3M+ users), patient data, and financial records from a healthcare platform. Data involves regulated PII and healthcare information subject to HIPAA and international medical privacy regulations.Black Basta claims to have exfiltrated approximately 700 GB of data from Sermo, including personal data, departmental records, financial information, project files, and patient data.
Data the group says was taken
AI dossier — extracted from the leak post- Personal data (physician profiles)
- Departmental data
- Financial records
- Project files
- Patient data information
What the group claims
Sermo Engaging with more than 1.3 million HCPs across 150 countries, we offer a unique physician-first online community that allows clinicians to communicate about issues that are important to them and their patients. Doctors can access our global community and the many benefits here.SITE: www.sermo.com Address : 200 Park Ave S, New York City, New York, 10003 United States Tel# (212) 358-0800ALL DATA SIZE: ~700gb 1. Personal data 2. Departments data 3. Finance 4. Projects, patient data infos & etc…
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

