The group known as Booba Project has listed Associated Gastroenterologists Of Central New York, P.C. on its leak site, claiming that 70 GB of data from the medical practice was taken. The organisation has not publicly confirmed the claim as of writing. The record does not enumerate any specific categories of information and does not state how many people may have been affected.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Associated Gastroenterologists Of Central New York
Get alerted the next time Associated Gastroenterologists Of Central New York files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Associated Gastroenterologists Of Central New York’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Your Records May Be in Play
If the claim is accurate, the people whose records were included face the permanent risk that sensitive medical and personal details could circulate among criminals. Medical records contain lifelong health information whose value to identity thieves and extortionists does not diminish over time. Because the filing lists no specific data fields, you cannot know from this listing alone whether identifiers that enable new accounts, insurance fraud, or targeted scams were involved.
What a Leak-Site Listing Actually Establishes
Ransomware and extortion groups frequently publish names of organisations on leak sites as part of their pressure tactics. These listings are produced by the attackers themselves and are not independently verified. Many turn out to be exaggerated, recycled from earlier incidents, or entirely false. A single entry on a ransomware.live-indexed site does not constitute confirmation that a breach occurred, that data was allegedly exfiltrated, or that any particular volume or type of information changed hands. Real confirmation would require an admission by the organisation, a regulatory filing detailing the scope, or notification sent directly to affected individuals. Until then, this remains an unverified accusation.
Ransomware Groups Continue Targeting Small Medical Practices
Healthcare organisations, especially smaller practices, remain a repeated focus for ransomware-extortion crews. These groups treat the sector as high-volume, relatively low-resistance targets for extortion because medical records retain their sensitivity indefinitely. The pattern is clear: listings appear, pressure is applied, and many organisations eventually pay or negotiate rather than risk public exposure of patient data. This does not tell you what happened in this specific case, but it explains why such claims surface regularly even when the underlying facts remain unconfirmed.