Restorative Therapies, Inc., a U.S. healthcare company specializing in Advanced Rehabilitation Technologies, was targeted in a ransomware attack by the AiLock group on May 29, 2026. The attackers claimed to have exfiltrated over 1TB of data, including the full databases of 167,303 patients, and put it up for sale on their leak site. The company has not yet issued a public breach notification statement.
The exposed data includes full patient data, 124,761 Social Security Numbers (SSNs), 49,798 sensitive medical diagnoses, partner agreements, payroll information, management details, and other employee Personally Identifiable Information (PII). This incident is a direct breach of Restorative Therapies, Inc. and is not categorized as a vendor or third-party breach. Although the AiLock group has threatened to notify regulators, no official filings from State Attorneys General have been documented as of June 25, 2026.
Details about this incident may develop further as investigations proceed and official notifications are potentially issued. Consumers should be aware that formal breach notices may be delayed.