On December 25, 2023, Coastal Plains Integrated Health, a not-for-profit behavioral health center serving individuals with mental health needs, was listed on the LockBit 3.0 ransomware leak site. The listing states that internal files were exfiltrated during a ransomware attack. The organization has not yet published a formal breach notification detailing the exact number of individuals affected or the full scope of data involved.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch coastalplainsctr.org
Get alerted the next time coastalplainsctr.org files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about coastalplainsctr.org’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Details from the Leak Site Listing
The LockBit 3.0 leak page indicates that Coastal Plains Integrated Health suffered a ransomware intrusion in which attackers successfully exfiltrated internal files before encrypting systems. The disclosure does not quantify how many patient or employee records were taken, nor does it list specific data types such as names, diagnoses, Social Security numbers, or insurance details. It simply states that internal files were exfiltrated and gives the victim a deadline to negotiate before public release of the stolen material. As of the listing date, no sample data had been published on the site.
Why This Matters for You and Your Family
When a behavioral health provider is breached, the exposure strikes at some of the most sensitive information a person can have. Mental health records can reveal diagnoses, treatment plans, medications, and therapy notes that many people prefer to keep strictly private. If your name, address, date of birth, or phone number were inside the stolen files, those details may now be in the hands of criminals who openly sell or extort with them. Even without an exact patient count, anyone who has received services from Coastal Plains Integrated Health since its founding should treat their personal and health data as at risk.
The Doxxing and Identity-Chain Implications
Ransomware groups rarely stop at dumping a single spreadsheet. Once internal files leave the victim’s network they often circulate in underground markets, allowing other criminals to combine them with data from earlier breaches. A seemingly harmless email address paired with a mental-health provider name can be chained to social-media handles, gaming accounts, or family-member profiles. This creates persistent doxxing risks: harassment, identity theft, insurance fraud, or targeted scams that exploit the stigma some still attach to mental-health treatment. Credential leaks like this one cascade into account takeovers that can reach your children’s gaming accounts when shared family emails or passwords are reused.