The Chaos ransomware group has listed Central Ohio Primary Care Physicians on its leak site, posting a countdown to publication for data it claims to hold. Ransomware.live logged the listing of copcp.com on August 25, and the dark web security blog HookPhish reported the claim a day later.
Central Ohio Primary Care is a physician-owned group serving more than 500,000 patients across Ohio, with hundreds of physicians at dozens of locations. The claim, which the company has not confirmed, has drawn quick legal attention: ClassAction.org opened an investigation on August 26, and the law firm Edelson Lechtzin announced its own inquiry into possible exposure of patient and employee information on August 28.
Chaos has targeted healthcare before, claiming a 235 GB theft from a Texas health network earlier this year. Like most leak-site posts, the COPCP listing is a threat rather than evidence, and no data has been published so far.
Patients of the practice should be alert for phishing messages, fraudulent billing, and identity theft attempts in coming weeks, and the group’s history suggests providers should treat the claim seriously even before any files appear. The incident also underscores how quickly ransomware claims against physician practices translate into legal exposure.