Ransomware Gang Claims Nutex Health Data Breach
The Gentlemen ransomware group has claimed responsibility for a data breach at Nutex Health, a healthcare services company, and is threatening to release stolen patient, employee, provider, business, and financial information. The group operates as a ransomware-as-a-service (RaaS) and has a history of double extortion attacks targeting victims across numerous countries. Nutex Health is currently investigating the full scope of the breach and facing a potential class-action lawsuit.
Nutex Health, a healthcare services and operations company, has confirmed that a data breach occurred, leading to the theft of sensitive personal and business information. Last week, the company informed the US Securities and Exchange Commission (SEC) about unauthorized network access and the subsequent exfiltration of files from its servers. As a result, the stolen data includes information pertaining to patients, employees, providers, business operations, and financial records. Nutex Health is currently investigating the extent of the breach and has also been notified of a potential class-action lawsuit filed in Texas. The company stated that it is unable to predict the outcome of the litigation or estimate the potential impact on its business strategy, operations, financial condition, or stock trading price. The Gentlemen ransomware group, operating as a ransomware-as-a-service (RaaS), has claimed responsibility for the attack, adding Nutex Health to its Tor leak site and threatening to release the stolen data within nine days. The Gentlemen group, also known as Storm-2697, emerged in mid-2025 and has successfully targeted over 580 victims in more than 75 countries, utilizing a double extortion tactic – both encrypting data and exfiltrating it for leverage during extortion attempts.