GLOBALMalwareHealthcareHealthcareRansomwareDonutleaksRansom DemandedActor NamedData Leak ThreatenedData PublishedHigh
Southwest Healthcare Services
bd_d333197f85b58141 · schema v1 · pii pii-v1
Full breach record for Southwest Healthcare Services →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Donutleaks on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Group activity: HealthcareDiscovered: 2023-07-17
Source: Ransomware.live
Post text · scraped from the leak site
Southwest Healthcare Services is a non-profit organization dedicated to providing quality healthcare in southwest North Dakota and northwest South Dakota. https://swhealthcare.net/ Full Data Download...
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_0c8778d9b0a5454dWashington State AGfiled 2023-03-31(160d gap)Verified by operator
- bd_3e7012f6243e4f0dMontana State AGfiled 2023-03-31(160d gap)Verified by operator
- bd_77a08581489e18adVermont State AGfiled 2023-03-31(160d gap)Verified by operator
- bd_c057300c877b220eVermont State AGfiled 2023-03-31(160d gap)Verified by operator
Show 1 more filing ↓Show fewer ↑up to 161d gap
- bd_b9a3d1a0f4aeea7dHHS OCRfiled 2023-04-01(161d gap)Verified
Source provenance
- Source URL
- https://www.ransomware.live/id/U291dGh3ZXN0IEhlYWx0aGNhcmUgU2VydmljZXNAZG9udXRsZWFrcw==
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 22, 2022
- Raw hash
- df1df7d2f4c3d2b3a298ac1b9eb238d498ad713429870582e57ce6e363551af4
Reporting entity
- Name
- donutleaks
Victim entity
- Name
- Southwest Healthcare Servicesnorm: southwest healthcare
- Industry
- Healthcarellm
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· donutleaks
- Threat actor
- DonutleaksExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.