On July 13, 2025, the Qilin ransomware group added apderm.com to its leak site, claiming that it had exfiltrated internal files from APDerm, the largest physician-owned dermatology practice in New England operating 25 locations across New Hampshire, Massachusetts, and Rhode Island.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch apderm.com
Get alerted the next time apderm.com files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about apderm.com’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates the attackers gained access to APDerm’s systems and removed sensitive internal documents before encrypting them. The precise number of patients or employees whose records were taken remains unknown. Available reporting describes the exposed material as internal files rather than a structured database dump of patient names, addresses, Social Security numbers, or clinical notes. The Qilin leak page for this incident went live on July 13, 2025, and follows the group’s standard pattern of publishing proof of data theft to pressure victims.
Why This Matters for You and Your Family
If you or any member of your family has been treated at one of APDerm’s 25 clinics, your personal health information may now sit in an attacker’s archive. Medical records are especially damaging when leaked because they contain diagnoses, treatment histories, insurance details, and sometimes Social Security numbers used for identity verification. Once that information reaches underground forums, it can be sold once or used repeatedly for years. Even if your name is not on the current leak page, the breach still creates long-term risk for you and your family because health data rarely loses its value to criminals.
The Doxxing and Identity-Chain Implications
A single breach like this rarely stops at the original victim. Criminals routinely combine stolen medical files with information from other leaks to build detailed profiles. An email address found in the APDerm files can be matched to gaming accounts, social-media handles, or school records belonging to you or your children. These connections create an identity chain that makes doxxing, targeted phishing, and account takeovers far easier. Credential leaks of this kind frequently cascade into gaming-platform compromises because the same password or recovery email is reused across services. Protecting both adult and children’s gaming accounts is therefore part of the same defense as securing health records.