nhs.uk
bd_c37146dd00f99782 · schema v1 · pii pii-v1
Full breach record for nhs.uk →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Cl0p on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
NHS.UK, operated by the National Health Service of England, plays a crucial role in providing health-related services and information to the UK population. It offers a plethora of resources about diseases, treatments, and preventative care. In addition, NHS.UK helps citizens locate and access health services including local GPs, hospitals and pharmacies. Its sites also provide tools for booking doctor's appointments and ordering repeat prescriptions online.
Source provenance
- Source URL
- https://www.ransomware.live/id/TkhTLlVLQGNsb3A=
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 13, 2025
- Raw hash
- 3fb63bef31a647e294af2a92a1452fc8bf1e1768011c6096a2bade30b9c0d550
Reporting entity
- Name
- clopnorm: cl0p
Victim entity
- Name
- nhs.uknorm: nhsuk
- Domain
- nhs.uk
- Industry
- Healthcare
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· cl0p
- Threat actor
- Cl0pExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.