GLOBALMalwareHealthcareHealthcareRansomwareBlackSuitRansom DemandedActor NamedData Leak ThreatenedData PublishedHigh
Clarke
bd_0ecb40d002f27686 · schema v1 · pii pii-v1
Full breach record for Clarke →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group BlackSuit (formerly Royal) on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Group activity: HealthcareDiscovered: 2023-04-24
Source: Ransomware.live
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_f1429e0862cdc925Montana State AGfiled 2023-05-18(28d gap)Candidate
Source provenance
- Source URL
- https://www.ransomware.live/id/Q2xhcmtlIENvdW50eSBIb3NwaXRhbEByb3lhbA==
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 20, 2023
- Raw hash
- cf72021c8b884647a466491b1ce90aa6e8d94a7d5c90824ca9bdcbc6d692266d
Reporting entity
- Name
- royalnorm: blacksuit
Victim entity
- Name
- Clarkenorm: clarke
- Domain
- clarkeliving.com
- Industry
- Healthcarellm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· blacksuit
- Threat actor
- BlackSuitExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.