Ransomware victim disclosure
← All victimsGellibrand Support Services
Claimed by Anubis · listed 4 days ago
Status timeline
- ListedSep 9, 2026
- Data leakeddate unknown
At a glance
- Group
- Anubis
- Status
- Data leaked
- Sector
- Professional Services
- Listed on leak site
- Sep 9, 2026
About the victim
AI dossier — public-source company profileGellibrand Support Services is an NDIS provider in Australia offering tailored support to individuals with disabilities, including supported accommodation, short-term assistance, individual support packages, and support coordination.
- Industry
- Disability Support Services (NDIS Provider)
Attack summary
Severity: critical — Confirmed exfiltration of patient medical records and personal data of vulnerable individuals (individuals with disabilities), combined with exposure of employee salary information and financial records. NDIS-regulated provider handling sensitive medical and personal data of protected persons.The anubis group claims to have exfiltrated patient medical records containing personal data, employee salary information, and internal financial records from the disability support provider.
Data the group says was taken
AI dossier — extracted from the leak post- patient medical records
- personal data of vulnerable individuals
- employee salary information
- internal financial information
What the group claims
A data breach at a company full of smiling patients.
The leak post
captured from the group's siteis an NDIS provider dedicated to supporting individuals with disabilities to enhance their quality of life and achieve personal goals. They offer a range of tailored services including supported accommodation, short-term assistance, individual support packages, and support coordination. When we analyze data from facilities that care for vulnerable people, finding dirty secrets inside can leave us with mixed feelings. On the one hand, the fact that terrible things are happening at yet another facility like this is obviously disturbing. On the other hand, it starts to feel like the breach itself has some meaning and, if properly exposed, could help reduce the number of such incidents in the future. Fortunately, with the company we are looking at this time, we found no evidence of negligence or improper treatment by its employees. Either they simply do not document such things, or they really do have their staff situation under control. Of course, we would very much like to believe it is the latter. Still, the company did make one mistake. You can probably guess which one. And now some of its patients' information has become publicly accessible. Unfortunately, it turned out to be exa…
Sources
Source
Indexed 4 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

