On March 31, 2025, the dermatology practice Dermatology Solutions in Fort Myers, Florida, appeared on the leak site of the ransomware group DragonForce. The attackers posted a notice claiming they had exfiltrated internal files during a ransomware incident at the medical office that serves patients seeking skin care, aesthetic treatments, and Mohs surgery in southwest Florida.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Dermatology Solutions
Get alerted the next time Dermatology Solutions files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Dermatology Solutions’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting on the DragonForce leak site indicates the group listed Dermatology Solutions and began publishing samples of the allegedly stolen data. The exact number of patients or staff affected remains unknown, as neither the practice nor the attackers have released a full count. Available reporting describes the exposed material as internal files rather than a structured database of patient records, though medical practices routinely store names, addresses, dates of birth, Social Security numbers, insurance details, and clinical notes. No evidence has surfaced showing that payment-card data or full medical histories were included in the initial samples.
Why This Matters for You and Your Family
When a local medical provider is breached, the information that leaks often belongs to ordinary families in the community. If you or your children have been patients at Dermatology Solutions or similar clinics, your personal details may now sit in an attacker-controlled archive. Medical data combined with contact information creates a high-value target because it can be used for identity theft, insurance fraud, or targeted phishing that sounds legitimate because it references real treatments or appointments. For families, one breach can expose both parents and minors, especially when shared addresses and phone numbers link household members together.
The Doxxing and Identity-Chain Implications
Stolen medical files rarely stay isolated. Attackers or data resellers can cross-reference names and addresses with usernames found on other platforms, building what security analysts call an identity chain. A leaked email from a dermatology visit can be matched to a gaming account, a parent-teacher portal, or a family social-media profile. Once linked, these chains enable doxxing, account takeovers, and harassment that stretch far beyond the original breach. Credential leaks like this one frequently cascade into gaming account compromises because children often reuse simplified passwords across school-related apps, mobile games, and entertainment services. Protecting those gaming accounts matters because they frequently contain payment methods, chat logs, and location data that further enrich an attacker’s profile of your family.