Ransomware victim disclosure
← All victimsPetaluma Health Center
Claimed by Karakurt · listed 3 years ago
Status timeline
- Listed
Apr 12, 2023
- Data leaked
At a glance
- Group
- Karakurt
- Status
- Data leaked
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Apr 12, 2023
- Data size
- 490 GB
About the victim
AI dossier — public-source company profilePetaluma Health Center is a Federally Qualified Health Center (FQHC) based in Petaluma, California, operating multiple clinic locations across Sonoma and Marin counties including sites in Rohnert Park, Point Reyes, and Bolinas. The organization provides comprehensive primary and specialty care services — including family medicine, behavioral health, dental, HIV care, pediatrics, and school-based health — to all patients regardless of ability to pay. It serves vulnerable and underserved populations including homeless shelter clients and high school students.
- Industry
- Federally Qualified Health Center (Community Health)
- Address
- Petaluma, California, United States
Attack summary
Severity: critical — Confirmed exfiltration and publication of 490 GB of data from a healthcare provider, including protected health information (PHI), patient medical records, and employee PII (SSNs, passports) at scale — squarely meeting the critical threshold for regulated medical and personal data exposure affecting a vulnerable patient population.Karakurt claims to have exfiltrated approximately 490 GB of data from Petaluma Health Center, including patient personal and medical information, financial documents (declarations, payment records, tax forms), and employee personally identifiable information such as SSNs, passport details, phone numbers, and addresses. The group has published the data (disclosed status: data_published).
Data the group says was taken
AI dossier — extracted from the leak post- Patient personal information
- Patient medical records
- Financial declarations
- Payment documents
- Tax forms
- Employee SSNs
- Employee passport copies
- Employee phone numbers
- Employee addresses
What the group claims
The Petaluma Health Center is a Federally Qualified Health Center that strives to care for the "whole" individual by providing excellent care for all patients, regardless of one's ability to pay for services. We do not know whether their patients personal and medical information was stored unsafely because of their disability to pay but we have almost 490GB of this Health Center on our servers. Along with that we've obtained a good amount of financial information (numerous declarations, payment docs, tax forms ...) and personal employees information (SSNs, passports, phone numbers, addresses etc).That is going to be interesting.
Sources
- Victim sitephealthcenter.org
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
