RANSOMWARE VICTIMHEALTHCARE⚠ DUPLICATE CLAIM
Invacare
rhysida📍 United States (US)📅 November 4, 2025
8
same group
Attack Intelligence
Invacare was compromised in a ransomware attack attributed to rhysida in November 2025. The organization, operating in the Healthcare sector in United States, was added to the group's data leak site as part of an extortion campaign.
rhysida operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
Invacare Invacare, founded in 1885 and headquartered out of Elyria, Ohio, is a manufacturer and distributor of home and long term care medical products. More
Additional Details
Other Victims — rhysida (8)
Lawson Roofing
Construction
Jun 2026
IDS Group
US · Not Found
May 2026
Landeshauptstadt Stuttgart
DE · Public Sector
May 2026
Tower View Primary School
GB · Education
May 2026
Stelia North America
US · Manufacturing
Apr 2026
Southold Town Senior ServicesSouthold Police Department
Government
Mar 2026
Rohner
CH · Manufacturing
Feb 2026
Cheyenne & Arapaho Tribes
US · Government
Feb 2026
Quick Facts
CountryUnited States (US)
SectorHealthcare
Attack DateNov 4, 2025
Intel Sourceransomlook
StatusDUPLICATE CLAIM
Threat Group
External Links
Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.