Ransomware victim disclosure
← All victimsFairview Dental Group
Claimed by Rhysida · listed 2 hours ago
Status timeline
- ListedAug 25, 2026
Current state: Listed for ransom
At a glance
- Group
- Rhysida
- Status
- Listed for ransom
- Sector
- Healthcare/Dental
- Listed on leak site
- Aug 25, 2026
- Data size
- 1.08 TB
- Records
- 5941 files
About the victim
AI dossier — public-source company profileFairview Dental Group is a dental practice offering family dentistry, cosmetic treatments, dental implants, and invisible braces. No public website or additional business details are available.
- Industry
- Dental Services
Attack summary
Severity: critical — Confirmed exfiltration of Protected Health Information (PHI) at scale, including patient medical records, X-rays, and personally identifiable health data from a dental practice. This violates HIPAA and exposes regulated healthcare data.Rhysida claims to have exfiltrated the entire patient database, including X-rays, scanned forms, consents, invoices, and unencrypted health records (PHI) from the dental practice.
Data the group says was taken
AI dossier — extracted from the leak post- Patient database
- Patient X-rays
- Scanned forms and consents
- Invoices
- Health records (PHI)
- Patient records
What the group claims
Dental practice offering family dentistry, cosmetic treatments, dental implants, and invisible braces.
The leak post
captured from the group's siteCRI Electric is a veteran-owned business based in San Antonio, providing professional electrical services since 1998. They cater to both residential and commercial clients, offering services such as emergency electrical repairs, EV charger installations, and home rewiring. **We are pleased to present:** Employee's federal account artifacts** (`HR-Confidential\Israel's Forms`): Login.gov personal recovery key (VA identity), TSP (retirement savings), ID.me, DoD DS Logon, PIEE (DoD contract payments)151 vendor W-9 forms** (SSN/EIN), payroll docs, HR-lawyer (privileged) correspondence, OSHA-adjacent injury/incident reports with photos.Public-sector bid pricing** (2025�2026: SAWS HQ EV charging, SAISD, NISD) � bid-competitiveness and Davis-Bacon certified-payroll context.Corporate docs (SDVOSB certification, Articles, bylaws, stock ledgers), QuickBooks financials, a Power of Attorney With just 7 days on the clock, seize the opportunity to bid on exclusive, unique, and impressive data. Open your wallets and be ready to buy exclusive data. We sell only to one hand, no reselling, you will be the only owner! Total capacity 5.79 TBLegal/Complaints/Offenses 77,939 OWi proceedings, lawsuits, l…
Data the group says was taken
- patient database
- patient X-rays
- scanned forms
- consents
- invoices
- health records (PHI)
Screenshot of the leak post

Sources
Source
Indexed 2 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

