2026 Diater — DeadLock ransomware claim; patient/medical records (unverified)
Data compromised
Actor claims directories with user folders, documents, QM files, EDICOM-linked material; reporting cites threat to medical records held ~10 years — inventory/count unverified
Technical writeup
Unverified ransomware / leak-site claim — August 1, 2026 coverage. DeadLock (Russian-origin double-extortion group; .dlock extension) listed Spanish biopharmaceutical company Diater (Madrid, founded 1999). Actors claim exfiltrated directories including user folders, documents, QM files, and EDICOM-related material; trade press notes sensitivity of patient and healthcare-professional records Diater may hold over ~10 years. No ransom amount, exact intrusion date, or attested patient census published; Diater had not issued a matching public confirmation in sources reviewed. recordsAffected 0 labeled unverified.
Root cause
Unverified DeadLock double-extortion leak-site listing naming Madrid biopharma Diater
References
- https://databreaches.net/2026/08/01/the-double-extortion-of-a-russian-ransomware-threatens-the-medical-records-that-diater-has-kept-for-10-years/
- https://www.apdnoticies.com/en/data-protection/the-double-extortion-of-a-russian-ransomware-threatens-the-medical-records-that-diater-has-kept-for-10-years_21644_102.html