Skip to content

Iranian Online Medical Platform Faces Alleged Data Breach Affecting 700,000+ Citizens

Dark Web Informer - Cyber Threat Intelligence

Iranian Online Medical Platform Faces Alleged Data Breach Affecting 700,000+ Citizens

Iran
Hospital & Health Care

🧩 Standalone API Access Now Available

Access high-volume threat-intelligence data, automated ingestion endpoints, ransomware feeds, IOC data, and more – independently from the above standard subscriptions.

View API Access

Unlock Exclusive Cyber Threat Intelligence

Powered by DarkWebInformer.com

Foundational access to breach intelligence. Track breaches, leaks, and threats in real time with high quality screenshots and concise expert summaries.

📚
5,100+ Blog Posts (PRO/ELITE)
Continuously updated breach reports and threat summaries.
📢
52,200+ Alerts (PRO/ELITE)
Daily breach, leak, and DDoS alerts.
📤
Unredacted Threat Feed
Live tracking with JSON export.
🔍
Leak and Breach Coverage
Direct access to claims and posts.
📡
Snippets and Quick Facts
Concise summaries of DDoS, defacements, and breaches.
🌐
500+ Onion and Clearnet Resources
Verified index of dark web sites and services.
📊
Real Time Uptime Dashboard
Live status of 500+ sites.
🤖
WhiteIntel.io API
Integrated checks inside breach posts.
🖼️
High Resolution Images
Uncompressed, watermark free evidence.
🔑
Keyword Notifications
Browser alerts for tracked terms.

Quick Facts

Date and Time of Alert
2026-01-14 04:54:08 UTC
Threat Actor
xploitleaks
Victim Country
Iran
Industry
Hospital & Health Care
Victim Org.
Unidentified Iranian Online Medical Platform
Victim Site
Not Disclosed
Category
Data Breach
Severity
Medium
Network
Clear Web

Incident Overview

A threat actor operating under the handle "xploitleaks" claims to be selling access to an alleged data breach of an unidentified Iranian online medical platform. According to the advertisement, the database contains information on over 700,000 Iranian citizens. The threat actor states the data is only available through their Telegram channel and provides sample records demonstrating the type of information allegedly compromised.

The claimed database allegedly includes personal identifiers such as names, surnames, national identification numbers, father names, phone numbers, and usernames. The threat actor also claims to be providing full access credentials to the online platform for each user record in the database. For contact, the threat actor directs interested parties to reach out via their Telegram support channel.

This post is for subscribers on the Plus, Pro and Elite tiers

Subscribe

Already have an account? Sign In

Latest