Ransomware victim disclosure
← All victimssynlab.com
Claimed by Blackbasta · listed 2 years ago
Status timeline
- ListedMay 4, 2024
- Data leakeddate unknown
At a glance
- Group
- Blackbasta
- Status
- Data leaked
- Country
- Germany
- Sector
- Healthcare
- Listed on leak site
- May 4, 2024
About the victim
AI dossier — public-source company profileSYNLAB is a leading provider of laboratory diagnostic services across Europe, serving practising doctors, clinics, and patients as a basic provider in many national healthcare systems.
- Industry
- Clinical Laboratory & Diagnostic Services
- Address
- Moosacher Straße 88, 80809 Munich, Germany
Attack summary
Severity: critical — Confirmed exfiltration of 1.5 TB including regulated healthcare data (medical test results, PII at scale). Medical diagnostic information and personal data of patients and employees constitute highly sensitive regulated information under GDPR, HIPAA, and similar frameworks.BlackBasta claims to have exfiltrated approximately 1.5 TB of data including company records, employee personal documents, customer personal data, and medical analysis results (spermograms, toxicology, anatomical reports, etc.).
Data the group says was taken
AI dossier — extracted from the leak post- Company data
- Employee personal documents
- Customer personal data
- Medical analysis results (spermograms, toxicology, anatomical reports)
What the group claims
SYNLAB is a basic provider in many national healthcare systems, and a leading provider of laboratory diagnostic services in Europe for practising doctors, clinics and patients. Welcome to SYNLAB. We’re here to help.SITE: www.synlab.com Address : SYNLAB International GmbH Moosacher Straße 88 80809 Munich | GermanyALL DATA SIZE: ≈1.5tb 1. Company data 2. Employees personal documents 3. Customer personal data! 4. medical analyzes (spermograms, toxicology, anatomy…) & etc…
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

