Alleged Data Breach of French Home Healthcare Provider SOS Oxygène Exposing 149,000 Patient Records
🧩 Standalone API Access Now Available
Access high-volume threat-intelligence data, automated ingestion endpoints, ransomware feeds, IOC data, and more – independently from the above standard subscriptions.
View API AccessUnlock Exclusive Cyber Threat Intelligence
Powered by DarkWebInformer.com
Foundational access to breach intelligence. Track breaches, leaks, and threats in real time with high quality screenshots and concise expert summaries.
Continuously updated breach reports and threat summaries.
Daily breach, leak, and DDoS alerts.
Live tracking with JSON export.
Direct access to claims and posts.
Concise summaries of DDoS, defacements, and breaches.
Verified index of dark web sites and services.
Live status of 500+ sites.
Integrated checks inside breach posts.
Uncompressed, watermark free evidence.
Browser alerts for tracked terms.
Quick Facts
Incident Overview
A threat actor using the handle "HexDex2" posted on BreachForums on January 10, 2026 claiming a data breach of SOS Oxygène, a French home healthcare provider recognized for 24/7 care of patients with respiratory and sleep disorders.
- Company Description: Home healthcare provider specialized in supporting patients with respiratory troubles and sleep disorders
- Total Records: 149,110 lines of patient data
- Data Fields: Patient names, address ID, extended address ID, street/route information, postal code, city/ville, latitude coordinates, longitude coordinates, quality indicators
- Sample Data Location: French addresses visible including "94 ROUTE DE L EGLISE DE SAINT PIERRE" in GARDEGAN-ET-TOURTIRAC with postal code 33350 and GPS coordinates (latitude 44.90095, longitude -0.02119)
- Download Links: Multiple file hosting platforms including bitsblob.com, mediafire, anonfiles, and gofile.io
Breach Claim URL
Unlock Exclusive Cyber Threat Intelligence
Powered by DarkWebInformer.com
Foundational access to breach intelligence. Track breaches, leaks, and threats in real time with high quality screenshots and concise expert summaries.
Continuously updated breach reports and threat summaries.
Daily breach, leak, and DDoS alerts.
Live tracking with JSON export.
Direct access to claims and posts.
Concise summaries of DDoS, defacements, and breaches.
Verified index of dark web sites and services.
Live status of 500+ sites.
Integrated checks inside breach posts.
Uncompressed, watermark free evidence.
Browser alerts for tracked terms.
Dark Web Informer © 2026 | Cyber Threat Intelligence