On March 25, 2026, independent dialysis provider ARC Dialysis LLC appeared on the leak site of the pear ransomware group. The listing indicates that attackers exfiltrated internal files during a ransomware incident and are now threatening to publish them.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch ARC Dialysis LLC
Get alerted the next time ARC Dialysis LLC files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about ARC Dialysis LLC’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting on the pear leak site lists ARC Dialysis as a victim with internal files exfiltrated. The company provides independent dialysis services, meaning patient records, billing information, employee data, and operational documents may have been taken. No exact victim count has been disclosed, and the precise volume or sensitivity of the files remains unconfirmed in available reporting. The group typically posts samples or deadlines on its onion site before full data release.
Why This Matters for You and Your Family
When a healthcare provider like ARC Dialysis suffers a breach, the people whose medical information passes through that organization face direct risk. Medical records, Social Security numbers, insurance details, and home addresses are frequent targets in these incidents. If your family has used ARC Dialysis services, your protected health information could now sit on a criminal server. That data does not lose value after a few weeks; it can fuel identity theft, insurance fraud, or targeted scams for years. Ordinary families rarely learn about these breaches until long after the damage begins.
The Doxxing and Identity-Chain Implications
Stolen internal files often contain spreadsheets that link patient names to phone numbers, email addresses, insurance IDs, and sometimes family member details. Attackers and subsequent buyers can chain this information with data from other breaches to build complete profiles. A single leaked email can lead to gaming accounts, social media handles, and children’s online profiles. Credential leaks of this nature frequently cascade into account takeovers because people reuse passwords across medical portals, email, and gaming services. Once an attacker maps one household member, the rest of the family becomes easier to target.