Accord Salud

08 Aug 2025 N/A 08-Aug-2025 Database,Combolist
221,482 Records Affected
Database,Combolist Source Structure
Telegram Breach Location
High-risk data exposed (passwords and/or SSN). Immediate credential reset and monitoring are recommended.

Breach Details

Domain N/A
Leaked Data Types Email Address,Password Hash
Password Types MD5

Description

We're seeing a disturbing trend of healthcare data breaches in Latin America. While large-scale ransomware attacks grab headlines, smaller leaks of patient data quietly circulate, creating a persistent risk. Our team discovered one such instance involving Accord Salud, a prominent Argentinian healthcare provider. What struck us wasn't the sheer volume of records – although substantial – but the specific combination of national ID numbers (DNI), medical diagnoses, and treatment details exposed together. This confluence creates fertile ground for identity theft and targeted social engineering attacks.

Accord Salud Breach: 1.5 Million Records Offer Detailed Patient Insights

The breach involves approximately 1.5 million records, painting a comprehensive picture of patients within the Accord Salud network. We initially identified the exposed database on a relatively obscure Telegram channel known for trading in leaked South American datasets. The initial post advertised a "full Accord Salud database" with proof-of-access screenshots. The data appears to have been circulating for approximately two weeks before our team flagged it, suggesting a slow burn rather than a rapid fire sale. What makes this breach particularly concerning is the inclusion of Argentinian Documento Nacional de Identidad (DNI) numbers alongside highly sensitive medical information. This combination significantly increases the potential for misuse. This incident underscores the ongoing challenge healthcare providers face in securing patient data, particularly in regions with evolving cybersecurity landscapes.

Breach Stats:
* **Total records exposed:** Approximately 1.5 million
* **Types of data included:** Full names, DNI (Argentinian National ID) numbers, dates of birth, addresses, phone numbers, email addresses, medical diagnoses (ICD codes), treatment details, insurance plan information, and internal patient IDs.
* **Sensitive content types:** PII, medical records, insurance data.
* **Source structure:** The data was presented as a well-structured JSON dump, suggesting a direct export from a database.
* **Leak location:** Telegram channel.

Adding context, a similar incident involving the theft of 500GB of data from Argentinian health insurer Swiss Medical Group occurred in February 2024, reportedly impacting over 600,000 people, according to *DataBreaches.net*. While we haven't confirmed a direct link between the two incidents, the timing and geographic proximity raise concerns about a potential coordinated campaign targeting Argentinian healthcare providers. Security Affairs *reported* that the Swiss Medical Group breach was claimed by the Rhysida ransomware group. The Accord Salud data leak, while not attributed to ransomware (at least not yet), highlights the systemic vulnerabilities within the sector. A post on a cybercrime forum stated, "AR healthcare is easy pickings. Weak security, valuable data." We have archived the Telegram post and a related discussion thread on a Russian-language cybercrime forum.

Leaked Data Types

Email · Address · Password · Hash

Breach Rank

Ranked by number of affected users

Impact Score

Impact Score: 8.86

Based on data sensitivity, breach size, and recency

Estimated Financial Impact

$1.6M

This is an estimate based on potential fraud, phishing, and data misuse. Not all users will be affected.

Scan to sign up

Scan to sign up instantly

24/7 Dark Web Monitoring
Instant Breach Alerts
Secure Data Protection
Your Data is at Risk

Your Personal Information is Exposed

We found your data exposed in multiple breaches. This includes:

  • Email addresses
  • Passwords
  • Phone numbers
  • Financial information
Secure My Information Now

Your information is protected by enterprise-grade security

Your Breach Details

Date:
Severity:
Records Exposed:

Your Exposed Information

Your Risk Level

How This Affects You

Full Breach Details

Premium Insights

Unlock Critical Security Information

Create a free account to access:

  • Full Breach Impact Analysis
  • Identity Theft Risk Score
  • Exposed Credentials Details
  • Personalized Security Recommendations
Create Free Account

Identity Theft Risk Score

Risk Score: 8.7/10 - Critical

Data Exposure Analysis

Passwords Critical
Financial High
Personal Medium
Social High
Security Critical

Breach Timeline Analysis

March 2024 Multiple credentials exposed in recent data breach
January 2024 Password found in dark web marketplace
December 2023 Personal information leaked in major security incident

Security Recommendations

High Priority
Password Security

Critical: Change compromised passwords immediately and enable 2FA on all accounts

Important
Financial Protection

Monitor credit reports and set up fraud alerts with major credit bureaus

Recommended
Identity Protection

Enable advanced identity monitoring and dark web surveillance