Graceworks Lutheran Services
bd_1849ecc5f654a133 · schema v1 · pii pii-v1
Full breach record for Graceworks Lutheran Services →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group BlackSuit (formerly Royal) on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Founded in 1929, Graceworks Lutheran Services is a lutheran social services organization that operates assisted living facilities. Do not be surprised that the company is engaged in charity - it's just a front. Maybe they are involved in money laundering - who knows...We have at our disposal the contents of all email addresses of the top management, full financial audits from 1995 to the present, 45GB or 486,880 Files of personal patients information (clinical) and even documents related to President Biden - very entertaining. Beside this, we have finance, employee documents, accounting, HR and much more others.Enjoy!
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_26108541f2e5e9a7HHS OCRfiled 2023-04-19(29d gap)Candidate
Source provenance
- Source URL
- https://www.ransomware.live/id/R3JhY2V3b3JrcyBMdXRoZXJhbiBTZXJ2aWNlc0Byb3lhbA==
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 21, 2023
- Raw hash
- ec6590de0a23892e97fc16e28787c2d669aaebd693c85b5514c97feae671025c
Reporting entity
- Name
- royalnorm: blacksuit
Victim entity
- Name
- Graceworks Lutheran Servicesnorm: graceworks lutheran
- Domain
- graceworks.org
- Industry
- Healthcarellm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· blacksuit
- Threat actor
- BlackSuitExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.