Ransomware victim disclosure
← All victimsUniformed Services University of the Health Sciences
listed as usuhs.edu · Claimed by Lockbit3 · listed 1 year ago
Status timeline
- ListedFeb 2, 2025
- Data leakeddate unknown
At a glance
- Group
- Lockbit3
- Status
- Data leaked
- Country
- United States
- Sector
- Education
- Listed on leak site
- Feb 2, 2025
About the victim
AI dossier — public-source company profileUniformed Services University of the Health Sciences (USU) is a federal health science university and professional school that trains military medical officers across the U.S. Armed Forces and Public Health Service. Located in Bethesda, Maryland, it operates four schools: School of Medicine, Graduate School of Nursing, Postgraduate Dental College, and College of Allied Health Sciences, serving active-duty military health professions education and biomedical research.
- Industry
- Military Medical Education & Research
- Address
- 4301 Jones Bridge Road, Bethesda, MD 20814, United States
- Founded
- 1972
Attack summary
Severity: high — USU is a U.S. federal government institution responsible for training military medical personnel. A confirmed breach of a Department of Defense-affiliated medical university poses significant risk to national security, operational continuity of military medical training, and potential exposure of sensitive health, personnel, and research data. Lack of proof publication does not diminish the critical nature of the target.LockBit3 claims to have breached Uniformed Services University. The group's leak post provides minimal detail on the nature of the attack (encryption, exfiltration, or both) or specific data compromised, beyond confirming the target.
What the group claims
Uniformed Services University of the Health Sciences is a health science university and professional school of the U.S. federal government. The primary mission of the school is to prepare graduates for service to the U.S.
Sources
Source
Indexed 1 year agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

