Home All Victims Healthcare Retroactive Audits

Healthcare Retroactive Audits

dragonforce

This record tracks a ransomware attack claimed by the dragonforce group against Healthcare Retroactive Audits. It collects the publicly disclosed attack details — sector, location and timeline — as published on the operator's leak site and indexed by Breach House.

Country
United States
Business Category
Healthcare / Pharma
Employees
51-100
Discovered
2025-11-26
Published
November 26, 2025
Victim ID
KGI5pERC0jlX

Attack Summary

22 171 128 medical record files, neatly packaged into 11 archives by hospital. The firm Healthcare Retroactive Audits, which was auditing the data for insurers, not only let the leak happen but also took no steps to stop the files from being published. When we approached NIH Information Security Program to discuss the issue, they said they weren’t interested in resolving it. We’re now open to talks with the affected organizations, insurers and the hospitals whose data were lost. These files are only a portion of the total breach, and we’re deciding whether to keep the release at this size or expand it.

Visit Website Original Post View Group: dragonforce
Legal Disclaimer: This ransomware victim record reflects information published on the operator's leak site. Breach.house does not acquire, download, host, access or redistribute unlawfully obtained data. It indexes only publicly visible information posted by ransomware, breach and infostealer operators and open web sources, without accessing the underlying stolen content. The service supports public awareness, legitimate research and cyber-resilience.