[SAFEPAY] – Ransomware Victim: chirurgiemaxillo[.]com

image

Ransomware Group: SAFEPAY

VICTIM NAME: chirurgiemaxillo[.]com

NOTE: No files or stolen information are [exfiltrated/downloaded/taken/hosted/seen/reposted/disclosed] by RedPacket Security. Any legal issues relating to the content of the files should be directed at the attackers directly, not RedPacket Security. This blog is simply posting an editorial news post informing that a company has fallen victim to a ransomware attack. RedPacket Security is in no way affiliated or aligned with any ransomware threat actors or groups and will not host infringing content. The information on this page is fully automated and redacted whilst being scraped directly from the SAFEPAY Onion Dark Web Tor Blog page.


AI Generated Summary of the Ransomware Leak Page

The ransomware leak page pertains to a healthcare organization operated through the website chirurgiemaxillo.com. The attack was discovered and publicly disclosed on July 7, 2025. The breach appears to involve significant data exposure, although specific compromised information has not been detailed. The page includes a screenshot illustrating the leak, highlighting the seriousness of the incident. No evidence suggests that personal or employee data was directly accessed or exfiltrated, but the leak still poses risks for the organization and its patients. The incident was part of a coordinated attack by an entity known as “safepay.”

The disclosed information indicates that the attack targeted a healthcare provider based in France, specializing in maxillofacial surgery. The leak’s presentation suggests potential exposure of internal documents or sensitive data related to the organization. While specific details of the compromised files are not provided, the leak is consistent with a typical data extortion attempt aimed at pressuring the victim into paying a ransom. The page contains a link to a dark web claim portal, allowing for further information or communication regarding the incident. The included screenshot emphasizes the gravity of the breach and the potential impact on the organization’s reputation and operations.


A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below

To keep up to date follow us on the below channels.