A forum user is claiming to have released a database allegedly stolen from Gastroenterology & Hepatology of CNY (G&H of CNY) and Digestive Disease Center of CNY (DDC of CNY), exposing what they describe as detailed patient records, medical diagnoses, pathology reports, medication histories, and Social Security numbers.
The post claims the leaked database contains information associated with 167,303 patients and includes more than 1 million diagnosis records, 1.5 million medication records, and hundreds of thousands of pathology-related entries.
The claims remain unverified. BreachNews has not independently verified the authenticity of the data or confirmed that the records originated from either healthcare provider.
Gastroenterology & Hepatology of CNY operates gastroenterology and liver disease services in the Syracuse region, while Digestive Disease Center of CNY serves as an ambulatory surgery center specializing in endoscopic procedures.
Post claims extensive patient information was released
According to the forum post, the alleged dataset contains records relating to 167,303 patients, including personally identifiable information and medical records.
The seller claims the data includes:
- Patient names and contact information
- Social Security numbers
- Dates of birth
- Email addresses
- Home addresses
- Phone numbers
- Medical diagnoses
- Prescription and medication histories
- Pathology records and specimen information
- Procedure-related records
The post further alleges that more than 124,000 patient records contain Social Security numbers and that over 46,000 individuals are associated with what the actor describes as sensitive medical conditions.
Medical and pathology data reportedly included
The forum listing claims the released archive contains more than 1,093,000 diagnosis records, 1,547,000 medication entries, and approximately 186,000 pathology specimens accompanied by narrative reports.
The actor further alleges that the data includes records relating to cancer diagnoses, hepatitis cases, sexually transmitted infections, substance abuse treatment, and mental health conditions.
If authentic, exposure of this type of healthcare information could present significant privacy and identity theft risks for affected patients because medical records often contain highly sensitive personal information that cannot easily be changed or replaced.
The post also claims the released archive contains multiple database tables distributed in both SQLite and CSV formats.
Actor links release to prior attack claims
The forum user claims the database originated from a ransomware attack allegedly carried out against the healthcare providers in April 2026. According to the post, the data has now been publicly released following the alleged compromise. BreachNews could not independently verify the claim or determine whether the dataset is connected to any previously disclosed incident.
The listing provides record counts, database descriptions, and sample screenshots intended to support the claims. While the screenshots appear to show database structures and record excerpts, they do not independently prove the authenticity or scope of the alleged breach.
BreachNews is not publishing sample records because the screenshots contain potentially sensitive personal and medical information.
Healthcare organizations remain frequent targets
Healthcare providers continue to face elevated cyber risk because they store large volumes of personal, financial, and medical information. Unlike payment card data, medical records often contain long-term identifiers and clinical histories that can create lasting privacy concerns if exposed.
Recent healthcare incidents covered by BreachNews include an alleged Careficient EMR breach exposing patient Social Security numbers and healthcare data, highlighting the continued targeting of organizations that manage sensitive medical records.
At the time of publication, no public statement addressing the alleged data release had been identified from Gastroenterology & Hepatology of CNY or Digestive Disease Center of CNY.
BreachNews will update this article if either organization confirms an incident or provides additional information regarding the claims.












