Threat Intelligence

N0n Claims Australian Healthcare Firm Company #27 on Its Leak Site

ransomware.live · 12 Oct 2026
Key Takeaway Australian healthcare practices should check now that their backups are offline and tested, that remote access uses multi-factor authentication, and that an incident response and breach notification plan is ready to use.

This claim is unverified, and the company has not confirmed an incident. The N0n ransomware group has listed an entity called Company #27 on its leak site, and the ransomware tracker ransomware.live recorded the listing on 2026-10-11. The tracker describes the listed business as a neurology practice in New South Wales, Australia. Groups sometimes list companies they have not breached, or list them while negotiations are under way, so the listing alone does not prove a breach.

The listing carries a pending exposure notice with a stated publication time of 2026-10-13 12:37 UTC. No size of any claimed data set is given, and nothing in the listing has been verified. The name shown is a placeholder, so the identity of the practice is not confirmed.

For healthcare providers, listings like this are a reminder that criminal groups publicly pressure small practices. Patient trust and privacy obligations make any claim worth taking seriously, even before it is confirmed.

Summarised by CISO AI from ransomware.live, written with Claude Sonnet 5.5. We link back to every original so you can read it yourself.