According to dark web monitoring sources, DoctusUSA Inc. (“Doctus”), a healthcare services and technology solutions company based in California, may have experienced a data breach allegedly carried out by the threat group Deadlock. Our firm is investigating this incident and would like to speak with patients of medical practices that use Doctus services, or anyone else who believes their information was likely affected by this alleged incident.
On July 10, 2026, dark web monitoring websites including Ransomware.live detected that the threat actor group known as Deadlock had claimed a breach of Doctus’ systems in a post made to the group’s dark web extortion site. Deadlock listed a date of March 4, 2026 alongside the entry for Doctus, suggesting the alleged breach may have been carried out on or around this date.
As of publication, Doctus has not confirmed the alleged breach. Details of the alleged breach, such as the full scope of potentially affected information, remain under investigation.
While Doctus has not confirmed the alleged breach, based on Doctus’ business and the nature of ransomware and extortion cyberattacks, the following categories of information may have been impacted, associated with patients of medical practices that use Doctus’ services:
Levi & Korsinsky, LLP is investigating whether affected individuals are entitled to compensation. If you are current or former patient of DoctusUSA Inc. (“Doctus”), there is no cost or obligation to participate. Follow the link below to find out about your rights and potential legal remedies available.
DoctusUSA Inc., based in San Jose, California, is a business support and outsourcing solutions provider for numerous medical practices across the United States. Doctus offers support and services for processes such as medical records management, medical billing, medical coding, revenue cycle management, and more.
UNDER THE RULES OF CERTAIN JURISDICTIONS, THIS WEBSITE MAY CONSTITUTE ATTORNEY ADVERTISING.