The Chattanooga Heart Institute
bd_e6c3c8f394d4bc2a · schema v1 · pii pii-v1
Full breach record for The Chattanooga Heart Institute →2 incidents on fileThreat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Karakurt on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
The Chattanooga Heart Institute at Memorial offers a comprehensive multidisciplinary approach to cardiac care. Another medical facility doesn't storage personal information safely. Employees and patients' private data will soon be here available for everyone. Medical records, tests results, diagnoses, social security numbers, passports, addresses, phone numbers, financial data and other documents are going to be uploaded.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
May 23, 2023
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- Indiana State AGbd_0abfce1eab26b5b92023-07-28 · +66dVerified
- Montana State AGbd_27ff2e2d4479e8db2023-07-28 · +66dVerified by operator
- Maine State AGbd_371787f6f5dc7cf62023-07-28 · +66dVerified by operator
- Maine State AGbd_0442e5051ee137822023-10-06 · +136dVerified by operator
Show 6 more filings ↓Show fewer ↑up to 310d gap
- Vermont State AGbd_41c7c1f47282b3aa2023-10-06 · +136dVerified by operator
- New Hampshire State AGbd_92dcbb06b28886722023-10-06 · +136dVerified by operator
- Maine State AGbd_4bc290ca5363ed842024-02-13 · +266dVerified by operator
- Vermont State AGbd_aa1ec43b034d96982024-03-27 · +309dVerified by operator
- New Hampshire State AGbd_5659cfb7865d2e452024-03-28 · +310dVerified
- Maine State AGbd_a2267e549573aa932024-03-28 · +310dCandidate
Showing first 10 of 13 linked disclosures.
Filing propagation · 11 filings · 5 states
View merged incident ↗Pattern: first filing May 23, last Mar 28 (ME) — a 310-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Cascade drawn from the first 10 linked disclosures of 13 — the full spread may be wider.
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
karakurt
According to ransomware.live, Karakurt is a pure data-extortion group (no encryption) assessed with high confidence to be the extortion arm of the Conti ransomware group, active from 2021, that steals data and threatens to auction or publish it unless ransoms ranging from $25,000 to $13 million are paid.