Ransomware victim disclosure
← All victimscarolinaarthritis.com
Claimed by Threeam · listed 2 years ago
Status timeline
- ListedOct 24, 2024
- Data leakeddate unknown
At a glance
- Group
- Threeam
- Status
- Data leaked
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Oct 24, 2024
About the victim
AI dossier — public-source company profileCarolina Arthritis is a rheumatology practice founded in 1991, specializing in the diagnosis and treatment of arthritis, musculoskeletal disorders, connective tissue diseases, autoimmune illnesses, and osteoporosis. Located in Wilmington, NC, the practice operates a 10,000 square-foot care center with board-certified rheumatologists offering services including infusions, bone densitometry, musculoskeletal ultrasound, and clinical research.
- Industry
- Rheumatology & Arthritis Treatment
- Address
- 1710 South 17th Street, Wilmington, NC 28401
- Founded
- 1991
Attack summary
Severity: high — Healthcare provider with confirmed data exfiltration and publication. Patient medical records and PII are regulated under HIPAA; disclosure of such data at a medical practice represents significant regulatory and privacy breach, even without proof count details.The Threeam ransomware group claims to have compromised Carolina Arthritis and published patient data. The group has disclosed the attack and published data, but the specific scope of exfiltration (patient records, medical histories, contact information) is not detailed in the truncated leak post.
Data the group says was taken
AI dossier — extracted from the leak post- patient records
- medical histories
- personal health information
What the group claims
Welcome to Carolina Arthritis Since its founding in 1991, Carolina Arthritis has been leading the way in the diagnosis and treatment of arthritis, musculoskeletal disorders, connective tissue diseases, autoimmune illnesses and osteoporosis. At...
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

