Total Patient Care LLC;A Sensitive Touch Home Health;Alphastar Home Health Care;Heart of T Listed by everest Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
Total Patient Care LLC, A Sensitive Touch Home Health, Alphastar Home Health Care, and Heart of T were listed by the Everest ransomware group on December 17, 2024, indicating internal files were exfiltrated in a ransomware attack. Individuals who received services from any of these providers should check the organizations’ notices and consider protective steps such as monitoring accounts and changing passwords.
On December 17, 2024, several home health care providers—Total Patient Care LLC, A Sensitive Touch Home Health, Alphastar Home Health Care, and Heart of T—appeared on a listing associated with the Everest ransomware group. The group claims to have carried out a ransomware attack that involved the exfiltration of internal files. The number of people whose information may be involved remains unknown, and public detail about the precise contents of those files is limited.
For patients, employees, and others connected to these organizations, the practical stakes are straightforward. Home health care providers routinely handle sensitive personal and medical information. When internal files are claimed to have been taken, the risk is that private details could be misused, even if the full scope of what was accessed has not been confirmed.
Breaking down the breach
According to the available record, the incident was reported on December 17, 2024. The Everest ransomware group listed Total Patient Care LLC, A Sensitive Touch Home Health, Alphastar Home Health Care, and Heart of T, asserting that internal files had been exfiltrated as part of a ransomware attack. No confirmed figure has been published for the number of individuals affected. The method of initial access, the duration of any unauthorized presence on systems, and the exact volume of data involved have not been disclosed in the public facts. A reported summary points to a file-sharing location, but independent verification of the full contents remains outside the confirmed record. In short, the listing itself constitutes the primary public claim; broader technical details are undisclosed.
The group behind it: everest
Everest is a ransomware operation that has been active in recent years and is known for double-extortion tactics. Groups of this type typically encrypt systems and simultaneously copy data, then threaten to publish or sell the material if a ransom is not paid. They maintain leak sites where they post victim names and, in some cases, samples of stolen files to pressure organizations. Public reporting has associated Everest with attacks across multiple sectors, including healthcare and professional services. Their listings are claims made by the actors themselves and should be treated as such until independently confirmed by the affected organizations or investigators. In this instance, the group claims the named home health providers were compromised and that internal files were taken; no further statements attributed specifically to this listing appear in the provided facts.
Total Patient Care LLC;A Sensitive Touch Home Health;Alphastar Home Health Care;Heart of T and its sector
These entities operate in the home health care field, providing medical and supportive services to patients outside traditional hospital settings. Organizations of this kind typically manage patient demographics, clinical notes, insurance details, billing records, and employee information. Home health care sits at the intersection of personal privacy and medical confidentiality; the data such providers hold is often more detailed and longer-lived than records kept by many other businesses. A breach claim involving internal files therefore carries weight because the sector’s core function depends on trust and the secure handling of health-related information. Public background on the sector does not establish any specific security posture or fault for these particular organizations; it simply underscores why the reported incident matters to the people they serve.
The information in question
The facts state that internal files were exfiltrated in a ransomware attack. No further breakdown of data types—such as specific categories of patient records, financial documents, or employee files—has been disclosed. Organizations in home health care commonly maintain medical histories, treatment plans, contact information, Social Security numbers, insurance identifiers, and administrative correspondence. Because the exact contents remain unconfirmed, it is not possible to state with certainty which of these, if any, were among the files claimed to have been taken. Readers should treat any assumption about particular data elements as speculative until official notifications or verified disclosures appear.
What's at stake
For individuals whose information may have been involved, the concrete risks include identity theft, fraudulent use of medical or insurance details, and unwanted contact or phishing that leverages personal knowledge. Even partial records can be combined with other publicly available data to create more complete profiles. For the organizations, the stakes include operational disruption, regulatory scrutiny under health-privacy rules, potential notification obligations, and the longer-term erosion of patient and partner confidence. Because the number of people affected is unknown and the precise data types are unconfirmed, the full scale of impact cannot yet be measured. The situation remains one of claimed exposure rather than a fully documented inventory of what left the network.
What to do if you're exposed
If you have been a patient, employee, or contractor of Total Patient Care LLC, A Sensitive Touch Home Health, Alphastar Home Health Care, or Heart of T, begin by monitoring financial and medical accounts for unusual activity. Consider placing a fraud alert or credit freeze with the major credit bureaus, and review any official notices the organizations may issue. Be cautious of unsolicited calls or emails that reference your care or personal details. As a practical next step, you can run a free exposure scan of your email address to check whether your information has already appeared in known breach data sets. Stay attentive to further updates from the providers themselves, as additional Reported Details may emerge over time.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
Artistic Family Dental;Value Dental Center;Sparkling Smiles Family Dentistry Listed by everest Ransomware GroupA Sensitive Touch Home Health;Alphastar Home Health Care;Heart of Texas Home Healthcare Se Listed by everest Ransomware GroupMCNA Dental 1 million patients records Listed by everest Ransomware Group2K Dental Listed by everest Ransomware GroupLatest breaches
Publicly posted by everest — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.