CertiCon, a Czech technology firm specializing in healthcare and telecommunications software and hardware, was listed on the DragonForce ransomware leak site on July 25, 2024. The listing indicates that internal files were exfiltrated during a ransomware attack. The company has not yet published a formal breach notification, leaving the exact number of affected individuals and the full scope of exposed data unknown at this time. If you or your family have received care through systems built or supported by CertiCon, or if you have any connection to the company as an employee, vendor, or partner, your information may now be in attackers’ hands.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch CertiCon
Get alerted the next time CertiCon files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about CertiCon’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Primary Disclosure Details
The DragonForce leak site entry states that CertiCon suffered a ransomware incident in which internal files were successfully exfiltrated. No specific volume of records is provided, nor does the listing enumerate the types of documents taken. The disclosure simply confirms data was removed from the victim’s environment prior to encryption. As is typical with these listings, the group threatens to publish the material unless the victim pays an undisclosed ransom. The exact deadline set by the actors is not visible in the public index maintained by ransomware.live.
Why This Matters for You and Your Family
Even when a breach notification does not list exact victim counts, the real-world impact can still reach ordinary people. CertiCon develops solutions used in healthcare and telecommunications; therefore patient records, employee payroll files, vendor contracts, or partner technical documentation could be among the stolen material. If any of those files contain names, addresses, dates of birth, national identification numbers, or medical details tied to you or your relatives, the exposure creates lasting risk. Internal files exfiltrated in ransomware attacks frequently include spreadsheets, PDFs, and database exports that attackers can parse for personal data within hours of release.
Doxxing and Identity-Chain Implications
Once internal files appear on a ransomware leak site, opportunistic criminals begin mapping the data to real identities. A single leaked email or phone number can link to your social-media accounts, online shopping profiles, and children’s gaming usernames. These connections form doxxing chains that allow attackers to harass family members, attempt account takeovers, or sell the compiled dossier on dark-web marketplaces. Credential leaks of this nature often cascade into gaming-account compromises because the same passwords or recovery emails are reused across work, personal, and family profiles.