On April 7, 2026, Arkansas Oral & Maxillofacial Surgeons appeared on the leak site of the pear ransomware group after the attackers exfiltrated internal files during a ransomware incident at the practice.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 582 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
What's Publicly Reported from Reporting
Public reporting indicates the medical practice, which provides a wide range of maxillofacial surgery services, had internal files taken. The incident was listed on the group’s onion-based leak site, pearsmob5sn44ismokiusuld34pnfwi6ctgin3qbvonpoob4lh3rmtqd.onion, under the entry for “arsurgeons.” No confirmed total of affected patients has been released. Available reporting describes the exposed material as internal files; exact volume and specific data types remain unconfirmed in public disclosures.
Why This Matters for You and Your Family
When a healthcare provider’s systems are breached, the information at risk often includes names, addresses, dates of birth, Social Security numbers, insurance details, and clinical records. These records can be used for identity theft, insurance fraud, or to build a more complete profile that makes future attacks against you or your family easier. Even if you are not a current patient, family members who received care there years ago may still be exposed. Medical data is especially sensitive because it can be leveraged for blackmail or sold on underground markets where buyers specifically seek health information.
The Doxxing and Identity-Chain Implications
A single breach rarely stays isolated. Attackers frequently link the stolen data with information from earlier leaks — usernames, email addresses, phone numbers, or passwords reused across services. This creates an identity chain that can lead to account takeovers on email, banking, or social media. Credential leaks like this one also cascade into gaming accounts. Children’s usernames or shared family passwords exposed in one breach can be used to hijack Roblox, Fortnite, Discord, or Steam accounts, often resulting in further personal details being doxxed. Once an attacker maps your household’s digital footprint, targeted harassment, swatting, or financial fraud becomes simpler.