The Storm ransomware group listed three US healthcare organizations on its leak site on August 7, according to threat intelligence trackers. The claims target Liberty Healthcare Corporation, OVP Health, and Southern Indiana Radiological Associates, spanning behavioral health management, emergency department staffing, and diagnostic imaging.
Liberty Healthcare Corporation runs health and human services programs including behavioral health services. OVP Health is a physician-owned company that staffs emergency departments and hospitalist programs and operates addiction treatment services. Southern Indiana Radiological Associates, founded in 1964, provides CT, MRI, PET, and breast imaging across the Bloomington, Indiana region. Attack dates are estimated between August 3 and August 6, with listings appearing a day later.
None of the three organizations has confirmed an intrusion, and leak site claims are unverified. The same-day cluster shows how Storm, a group known for targeting US organizations, is working through different corners of healthcare delivery at once, from imaging centers to behavioral health contractors.
For security teams, the pattern is a reminder that smaller healthcare organizations and specialty practices remain prime extortion targets. Reviewing remote access controls, enforcing multi-factor authentication, and testing offline backups are the standard defenses against this group’s typical intrusion chain.
