Northeast Orthopedics and Sports Medicine
bd_e10ee99aeb9a307f · schema v1 · pii pii-v1
Full breach record for Northeast Orthopedics and Sports Medicine →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Dan0n on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Northeast Orthopedics and Sports Medicine is a company that operates in the Hospital & Health Care industry. The total size of stolen information is 1.56TB.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
May 8, 2024
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (9) · sorted by filing gap
- New Hampshire State AGbd_37ee5092e4a8d3af2024-03-11 · +58dVerified
- Montana State AGbd_115bdec65d3e5a9f2024-03-05 · +64dVerified
- New Hampshire State AGbd_1fe4d2cd006c5abc2024-03-05 · +64dVerified by operator
- Massachusetts State AGbd_7357d0a7d86ba3ce2024-03-05 · +64dVerified by operator
Show 5 more filings ↓Show fewer ↑up to 365d gap
- Maine State AGbd_8bf5e22c4b868b022024-03-05 · +64dVerified
- Indiana State AGbd_9aa58d672724b86a2024-03-05 · +64dVerified by operator
- Vermont State AGbd_f6c8fef6418f8faa2024-03-05 · +64dVerified
- HHS OCRbd_0bb9f6181fc398e52024-02-27 · +71dVerified by operator
- Massachusetts State AGbd_c06efdc8834f87642025-05-08 · +365dVerified by operator
Filing propagation · 10 filings · 7 states
View merged incident ↗Pattern: first filing Feb 27 (NY), last May 8 (MA) — a 436-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
dan0n
According to ransomware.live, dAn0n emerged in early 2024 operating a RaaS model, rapidly claiming 13 victims in May 2024 alone, predominantly targeting US-based organizations in business services and filling the vacuum left by disruptions to LockBit and BlackCat/ALPHV.