East Texas Family Medicine Listed by genesis Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
East Texas Family Medicine was listed by the genesis Ransomware Group on July 03, 2026, after internal files were exfiltrated in a ransomware attack; the number of individuals affected remains unknown. Patients should check any notifications from the provider and consider placing a fraud alert or credit freeze if their information may have been exposed.
Inside the incident
The only confirmed detail is the listing itself. Genesis posted East Texas Family Medicine as a victim and asserted that files had been removed from its systems. No date of the intrusion, volume of data, or method of access has been made public. The organization has not issued a statement confirming or disputing the claim, and no regulatory filing or law-enforcement notice has disclosed additional facts.
Who is genesis?
Genesis is a ransomware group that has operated since at least 2023. It follows the common pattern of encrypting victim systems and then threatening to publish stolen data on a dedicated leak site if payment is not received. The group has previously claimed responsibility for intrusions at organizations in multiple sectors, though each listing remains an unverified assertion by the actors themselves until independently confirmed.
Who is East Texas Family Medicine?
East Texas Family Medicine provides primary-care services in the East Texas region. Like other outpatient medical practices, it maintains records that include patient identifiers, clinical notes, insurance information, and billing details. Such organizations routinely store data that is both sensitive and subject to federal privacy rules, making any confirmed exfiltration a matter of regulatory as well as operational concern.
What was likely exposed
The listing refers only to “internal files.” No inventory of specific data elements has been published. Healthcare providers of this type commonly hold names, dates of birth, addresses, medical histories, diagnoses, prescription information, and insurance or payment records. Whether any of these categories are present in the exfiltrated material remains unconfirmed.
What's at stake
Patients whose information appears in the files could face risks of identity theft, targeted fraud, or unwanted disclosure of medical details. The organization itself may incur costs related to investigation, notification, and potential regulatory review. Because the scale of the data and the identities of affected individuals are still unknown, the full extent of these consequences cannot yet be measured.
What to do if you're exposed
Anyone who receives a notification from East Texas Family Medicine or who suspects their information may be involved should review statements from the provider for specific instructions. Standard steps include monitoring financial and insurance accounts for unusual activity, placing fraud alerts with credit bureaus if personal identifiers are at risk, and changing passwords on any patient portals. Readers can also run a free exposure scan of their email address against known breach data sets to check for prior appearances of their information.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
Mirage Endoscopy Center Listed by genesis Ransomware GroupFamily Medical Associates of Raleigh Listed by genesis Ransomware GroupThe American Board of Preventive Medicine Listed by genesis Ransomware GroupMC-Rx Listed by genesis Ransomware GroupLatest breaches
Publicly posted by genesis — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.