Sponsored by Hudson Rock – Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

hsc.mb.ca

hsc.mb.ca

Discovered 2026-10-11 01:14 UTC
Est. attack date 2026-10-10
Country CA
Sector
Agriculture and Food Production Education Energy & Utilities Financial Services Government & Defense Healthcare Hospitality Manufacturing Other Professional Services Retail & E-Commerce Technology Transportation

Description:

The Health Sciences Centre in Winnipeg, one of the largest medical institutions, was targeted by us that resulted in the largest data breach among healthcare institutions. Our group chose not to completely disrupt the facility’s operations, recognizing the potentially devastating consequences that such an action could have had on patients’ lives and health. Nevertheless, Health Sciences Centre management stated that no sensitive data had been affected, despite having been informed otherwise. The data included, but was not limited to, the following information: Patient medical records: Full name, date of birth, address and phone number Hospital medical record number Diagnoses, medical history, allergies and medications Laboratory results, imaging reports Appointment dates, treatment details and physician information. Employee and healthcare professional information: Names, contact details, dates of birth and employee numbers Employment, payroll and banking information Professional credentials, work schedules and departmental assignments. Financial and insurance information: Billing records and payment histories Insurance or benefits claim information. Confidential hospital documents: Internal emails and staff communications System configurations, network diagrams and security procedures Database backups and exported spreadsheets. We would have very much preferred to avoid making this data breach public, but the management has left us with no other choice.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 0

Third Party Employee Credentials: 4


External Attack Surface: 0


Exposure Report
by ParanoidLab
3618
Passwords
110 critical
0
Cookies
0 critical
Last queried 2026-10-11 01:13 UTC

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • dnsmanitoba-ehealth.ca
  • compliancetucows.com
MX Records
  • hsc-mb-ca.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=spf1 mx include:manitoba-ehealth.ca include:_spf-dc17.sapsf.com -all
  • DNaKOuwsMKCPSsUbTizpBmsPGopTZ7Sv52BNbvS2yY8XDitmXYutrzbbX55Rz2x8EcoPpHKQpy0pyCQRe0GK0g==
  • MS=ms49010054
  • MS=ms75738502
  • R24TA2AHYESCGLJQZ1YRO2EEV8XH91WQIDV1D9RV
  • ZOOM_verify_BHzqR8SWTeCfSiIR188_mA
Cloud / SaaS Services Detected
Microsoft 365 Zoom

Leak Screenshot:

Leak Screenshot