Pound Road Medical Centre Listed by anubis Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
Pound Road Medical Centre has been listed by the anubis ransomware group, with internal files reported as exfiltrated. The listing was disclosed on November 13, 2024; the number of individuals affected has not been confirmed. Patients and staff are advised to check any communications from the centre and review their personal information for signs of misuse.
People who have been patients or staff at Pound Road Medical Centre may now face the practical risk that personal and medical details have left the organisation’s control. On 13 November 2024 the centre was listed by the ransomware group known as anubis, which claims to have taken internal files. The number of people affected remains unknown, yet the types of information named in connection with the listing—Australian passports, dates of birth and medical records—carry lasting consequences for identity, privacy and healthcare continuity.
Public detail is limited. What is known comes from the group’s own leak-site claim rather than from an independent confirmation of the full scope or method of the intrusion. For anyone whose records may be involved, the immediate concern is straightforward: sensitive data that should have stayed inside a medical practice may now be in the hands of criminals.
Inside the incident
According to the available record, Pound Road Medical Centre was listed by the anubis ransomware group on 13 November 2024. The group claims that internal files were exfiltrated during a ransomware attack. No further technical details—such as the initial access vector, the exact date the intrusion began, the volume of data taken, or whether systems were encrypted—have been publicly disclosed. The number of individuals whose information may have been involved is listed as unknown.
The only data categories named in connection with the listing are Australian passports, dates of birth and medical records. These are presented as part of the group’s claim rather than as independently verified findings. Beyond that claim, public information about the incident itself remains sparse.
Inside anubis
Anubis is a ransomware operation that has appeared in public reporting since roughly 2023–2024. Like many contemporary groups, it typically follows a double-extortion model: data is stolen before systems are encrypted, and the threat of public release is used to pressure victims into paying. The group maintains a leak site on which it posts the names of organisations it claims to have compromised, often accompanied by sample files or descriptions of the data allegedly taken. Public analyses describe anubis as opportunistic rather than highly selective, targeting a range of sectors including healthcare, professional services and smaller enterprises that may have fewer specialised defences.
The listing of Pound Road Medical Centre is therefore a claim made by the group on its leak site. No independent confirmation that the centre was successfully breached, or that the named data types were in fact removed, has been supplied in the public record used for this account. Readers should treat the group’s assertions as unverified until corroborated by the organisation or by competent authorities.
About Pound Road Medical Centre
Pound Road Medical Centre is a medical practice. Organisations of this kind routinely hold clinical notes, diagnostic results, referral letters, appointment histories, Medicare or private-health identifiers, and administrative records that include full names, dates of birth, addresses and contact details. Many also store copies or scans of identity documents such as passports or driver’s licences for verification purposes.
A breach at a medical centre is consequential because the data it holds is both intimate and long-lived. Medical histories cannot be changed the way a password can; passport details and dates of birth are fixed identifiers that remain useful to criminals for years. Patients and staff therefore have a direct interest in understanding what may have been exposed and how to reduce secondary harm.
What data was at risk
The facts name the following categories in connection with the anubis listing: Australian passports, dates of birth and medical records, described as internal files exfiltrated in a ransomware attack. No further breakdown—such as the number of passport images, the date range of the medical records, or whether financial or insurance data were also present—has been disclosed.
Medical centres typically retain clinical notes, test results, medication lists, correspondence with specialists, and demographic information. Whether any of those additional categories were among the files claimed by anubis is unconfirmed. The exact contents of the alleged exfiltration therefore remain unknown beyond the three types explicitly listed.
The real-world impact
For individuals, the concrete risks include identity theft that exploits passport details and dates of birth, targeted phishing that references genuine medical history, and the permanent loss of privacy over health conditions. Criminals who obtain medical records can craft highly convincing social-engineering messages or sell the data on underground markets. Passport information can be used to open accounts or travel documents in another person’s name.
For the organisation, the consequences include regulatory scrutiny under Australian privacy and health-records law, the cost of forensic investigation and patient notification, potential disruption to clinical services, and lasting damage to patient trust. Because the number of affected people is unknown, the scale of these impacts cannot yet be quantified.
What to do if you're exposed
If you have been a patient or employee of Pound Road Medical Centre, treat the possibility of exposure seriously even while the full facts remain limited. Monitor bank and credit accounts for unexpected activity, place a fraud alert or credit freeze if available in your jurisdiction, and be sceptical of unsolicited emails or calls that reference your medical history or personal details. Change passwords on any accounts that may have used the same credentials as systems linked to the practice, and enable multi-factor authentication wherever possible. Report suspected misuse of your identity documents to the relevant Australian authorities.
You can also run a free exposure scan of your email address to check whether that address has already appeared in known breach data sets. Doing so provides an early signal that further protective steps may be warranted.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
Laidley Family Doctors Listed by anubis Ransomware GroupNortheast Pediatrics & Adolescent Medicine Listed by anubis Ransomware GroupQuest Healthcare Solutions Listed by anubis Ransomware GroupBOSTON ORTHOTICS, INC. Listed by anubis Ransomware GroupLatest breaches
Publicly posted by anubis — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.