logo

If threat actors gave you a chance to redact the patient data they hacked before they leak it, would you take them up on the offer? Read about the Woundtech incident.

ID: d361aa4d-aae5-54c6-a526-737603ee70c8

STIX ID: report--d361aa4d-aae5-54c6-a526-737603ee70c8

Feed Name: DataBreaches.Net

Threat Score
86/100

Date Published: 2026-03-23

Date Updated: 2026-04-19

Author: Dissent

...
...

# Executive summary On or about December 6–9, 2025 FulcrumSec gained unauthorized access to Woundtech, exfiltrating a portion (~335 GB) of a larger 6.7 TB dataset that included full Snowflake table exports (clinical notes, ~928,073 unique patient IDs) and S3-hosted files (~178,886 files of wound photos and PDFs); samples and detailed analyses were posted publicly, FulcrumSec negotiated with Woundtech (including unusual offers to let the company redact or to delete individual records on request), and Woundtech notified regulators and patients months later while offering credit monitoring services.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.