The Anubis ransomware gang has claimed a breach of Interim HealthCare, the national home care and medical staffing franchise network, according to three ransomware trackers that logged the listing.
Anubis posted Interim HealthCare on its leak site on August 15, 2026, describing the victim as a home healthcare agency and medical staffing firm. Ransomware.live, RansomLook, and GalaxyWarden all record the claim with the same date. The posting is unconfirmed, and Interim HealthCare has not commented.
Interim HealthCare, in business since 1966, operates as a network of locally owned care centers providing nursing, therapy, and home care services. The brand’s structure matters for tracking: an earlier claim this month by the Genesis gang targeted a specific franchisee, Interim HealthCare of Oklahoma and Tulsa, while the new Anubis listing names the brand without a location, pointing to a separate incident.
Anubis is no stranger to healthcare. The group hit Brockton Hospital in Massachusetts in 2025, disrupting patient care for weeks.
Franchise networks are a growing ransomware concern because one parent brand can span hundreds of independently operated care sites with uneven security maturity. For CISOs, the takeaway is to map franchisee and contractor relationships into vendor risk programs before a leak-site listing makes that work urgent.