Horizon View Medical Center Listed by everest Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
The Horizon View Medical Center Listed by everest Ransomware Group (reported August 8, 2024) is an unverified claim; the data involved is undisclosed belonging to roughly unknown people. If you have an account with them, your information may now be circulating on the open web and with data brokers. Here’s exactly what happened, how to check if you were affected, and what to do next.
On August 8, 2024, Horizon View Medical Center appeared on a listing associated with the Everest ransomware group. The group claims it has taken internal files and given the organization a short window to make contact before publishing the material. For patients, staff, and anyone whose records may sit in those systems, the practical question is straightforward: whether personal or medical information has left the organization’s control and what that could mean for privacy and daily life.
Public detail remains limited. The number of people affected is unknown, and the precise contents of the files have not been independently confirmed. What is known is the claim itself and the pressure it places on a healthcare provider that holds sensitive information by nature of its work.
Inside the incident
According to the listing attributed to Everest, the group states that it has exfiltrated internal files from Horizon View Medical Center in a ransomware attack. The notice, reported on August 8, 2024, asserts that the organization has the last 24 hours to contact the group using instructions left behind; if there is no response, the group says all data will be published. The listing includes the center’s website, a Las Vegas phone number, and a street address on North Durango Drive.
No independent confirmation of the intrusion, the volume of data, or the exact method of access has been made public in the available record. The number of people whose information may be involved is unknown. Timing beyond the report date, technical details of the attack, and any response from the medical center are undisclosed. The episode is therefore known primarily through the group’s claim on its leak site rather than through verified forensic disclosure.
Who is everest?
Everest is a ransomware operation that has been observed conducting double-extortion campaigns: encrypting systems while also copying data and threatening to release it if payment demands are not met. Like other groups in this category, it maintains a public leak site where it lists victims and, in some cases, posts samples or full archives after deadlines pass. The group typically leaves ransom notes with contact instructions and sets short response windows, a pattern consistent with the language used in the Horizon View listing.
Public reporting over time has associated Everest with attacks across multiple sectors, including healthcare and professional services. Its tactics generally rely on initial access through common vectors such as compromised credentials or exposed remote services, followed by lateral movement, data theft, and encryption. None of those general patterns should be read as confirmed specifics for this particular incident; they describe how the group has operated in documented cases. The listing of Horizon View Medical Center remains an unverified claim by the group unless and until further evidence is published by the organization or independent investigators.
Who is Horizon View Medical Center?
Horizon View Medical Center is a healthcare provider operating in Las Vegas, Nevada, with a listed address at 6170 N Durango Dr Ste 220 and a public phone number. Medical centers of this type deliver clinical care, maintain patient records, manage billing and insurance information, and store administrative files related to staff and operations. In the United States, such organizations are subject to privacy rules that treat health information as highly sensitive.
A breach claim against a medical center is consequential because the data it holds can include identifiers, clinical histories, contact details, and financial information tied to care. Even when the exact files involved are not yet known, the sector’s role in people’s lives means any unauthorized access carries elevated privacy and practical risks for those who have sought treatment or worked there.
The information in question
The available facts state that internal files were exfiltrated in a ransomware attack. No further breakdown of those files—such as patient records, employee data, financial documents, or operational materials—has been disclosed or independently verified. The number of individuals potentially affected is unknown.
Organizations of this kind typically hold electronic health records, appointment and billing data, insurance details, staff personnel files, and internal correspondence. That is the ordinary scope of a medical center’s information systems. Because the exact contents of the claimed exfiltration remain unconfirmed, it is not possible to state which of those categories, if any, were taken. Readers should treat any specific data-type assertions beyond “internal files” as unconfirmed until the organization or a reliable investigation provides clarity.
What's at stake
For individuals, the primary risks are privacy exposure and secondary misuse. If medical or personal identifiers are among the files, affected people could face unwanted contact, attempts at fraud, or the long-term presence of sensitive details in unauthorized hands. Healthcare data is particularly durable; once released, it cannot be “recalled” and may surface years later in other criminal markets. Even without confirmed patient records, internal files can contain enough context to enable targeted phishing or identity-related scams.
For the organization, the stakes include operational disruption, regulatory scrutiny under health-privacy rules, potential notification obligations, and erosion of patient trust. Ransomware incidents often force temporary system downtime, divert staff attention, and generate legal and remediation costs. None of these outcomes has been confirmed in public reporting for this case; they represent the ordinary consequences that follow when a healthcare provider is listed by a ransomware group and data exfiltration is claimed.
Were you affected?
If you have been a patient, employee, or business partner of Horizon View Medical Center, treat the situation as a possible exposure until more information appears. Monitor financial and insurance statements for unexpected activity, be cautious of unsolicited calls or emails that reference medical care or personal details, and consider placing a fraud alert with credit bureaus if you believe your identifiers may be involved. Keep records of any official notices you receive from the organization.
You can also run a free exposure scan of your email address to check whether it has already appeared in known breach data sets. That step does not confirm or rule out involvement in this specific incident, but it provides a practical way to see whether your information has surfaced elsewhere and to decide on further protective measures.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
Genie Healthcare Listed by everest Ransomware GroupTotal Patient Care LLC;A Sensitive Touch Home Health;Alphastar Home Health Care;Heart of T Listed by everest Ransomware GroupArtistic Family Dental;Value Dental Center;Sparkling Smiles Family Dentistry Listed by everest Ransomware GroupMyhealthcarebilling Listed by everest Ransomware GroupLatest breaches
Publicly posted by everest — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.