On March 6, 2026, the Caribbean Medical Center appeared on the leak site of the ransomware group known as The Gentlemen, with the attackers claiming to have exfiltrated internal files during a ransomware incident at the hospital.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
What Public Reporting Shows
Public reporting indicates the hospital’s website, www.caribbeanmedicalcenter.com, was listed on the group’s dark-web leak page hosted at a Tor onion address. The listing states that internal files were taken, although the precise volume of data and the total number of individuals affected remain undisclosed in available reporting. The facility provides emergency services, inpatient care, and specialized treatment for pediatric, adult, and geriatric patients across departments including internal medicine, cardiology, pediatrics, obstetrics and gynecology, and surgery. No confirmation has yet been published by the hospital itself regarding the accuracy of the claim or the specific data types involved.
Why This Matters for You and Your Family
When a medical provider is breached, the information at risk often includes names, addresses, dates of birth, Social Security numbers, insurance details, and clinical records. Medical data is especially sensitive because it can be used for identity theft, insurance fraud, or to pressure families into paying to keep private health matters out of public view. If you or any member of your family has ever received care at Caribbean Medical Center or a similar regional provider, your personal and health information may now sit in an attacker’s archive. Once stolen health data reaches underground markets, it can circulate for years, increasing the chance that someone will attempt to open accounts, file false tax returns, or impersonate you or your children.
The Doxxing and Identity-Chain Implications
Medical breaches rarely stop at a single record. Attackers frequently cross-reference leaked patient emails, phone numbers, and addresses with credentials from other breaches. This creates long identity chains that link your healthcare login to your email, social-media handles, and even your children’s gaming accounts. A single exposed email-password pair can let intruders take over multiple services, change contact details, and gradually assemble a full profile that leads to doxxing. Credential leaks like this one cascade into account takeovers because the same passwords are often reused across work, personal, and family gaming platforms. Children’s accounts are particularly vulnerable because parents frequently apply the same email or a familiar password pattern, turning one hospital breach into a gateway that exposes an entire household.