On October 18, 2024, the Illinois-based law firm Salvi, Schostok & Pritchard P.C. appeared on the leak site operated by the frag Ransomware Group. The firm, which specializes in medical malpractice and personal injury cases, may have had its internal files exfiltrated during a ransomware attack. The listing states that frag actors successfully extracted customer medical documents, contact information of clients and employees, partnership agreements, licenses, contracts, and Medicare documents. The number of people affected remains unknown.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Salvi, Schostok & Pritchard P.C.
Get alerted the next time Salvi, Schostok & Pritchard P.C. files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Salvi, Schostok & Pritchard P.C.’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Details from the Leak Site Listing
The frag leak site posting states the law firm was hit by a ransomware operation and that attackers exfiltrated documents rather than simply encrypting them. It lists specific categories of stolen material: customer medical documents, contact information of clients and employees, partnership agreements, licenses and contracts, and Medicare documents. The disclosure does not quantify how many records were taken or name individual victims. No ransom demand figure is published on the listing.
Why This Matters for You and Your Family
If you or anyone in your household has ever been a client of Salvi, Schostok & Pritchard P.C., your medical history, contact details, and possibly Medicare information may now sit on a criminal leak site. Even if you were never a client, the firm’s employee contact data could expose current or former staff members and their families. Medical records and government program documents are especially damaging because they tie your health information directly to your identity, address, and financial relationships. Once this material reaches underground forums, it can be repackaged and sold for years.
The Doxxing and Identity-Chain Risks
Medical documents and client contact lists create long identity chains. An attacker who obtains your name, phone number, and medical details can cross-reference them with data from previous breaches to build a complete profile. This profile often links to email addresses, family member names, and even children’s online gaming accounts. Credential leaks of this type frequently cascade into account takeovers across personal and household services. DoxxScan by GalaxyWarden continuously monitors 13.1B+ breach records and 100+ platforms with AI-powered identity-chain mapping and hands-on remediation by specialists, including coverage for your family and children’s gaming accounts that can become entry points for further doxxing.