Proliance Surgeons Data Breach Investigation

Written by 
Published on:
September 4, 2026
Updated on:
September 4, 2026

A ransomware group known as Payoutsking posted the name of Proliance Surgeons, a Washington-based orthopedic and surgical care network with clinics across the Seattle area and eastern Washington, to its dark web leak site on September 2, 2026.

The listing was first flagged by threat intelligence firm SOCRadar. Proliance Surgeons has not confirmed a breach occurred, and the claim has not been independently verified by any outside authority.

The source reportedly found eleven sets of employee login credentials connected to internal systems, including a staff identity portal, a clinical patient portal, and an internal company site. Several of those logins reportedly went unchanged for roughly six months, from February through August of this year.

SOCRadar has not said whether those credentials were how Payoutsking gained access, if it gained access at all. The group has claimed several other victims in healthcare and professional services over the past two months, according to public reporting, which points to a pattern rather than an isolated event.

Patients and employees connected to Proliance Surgeons should still keep an eye on bank statements, insurance claims, and any mail claiming to be from the provider, since scammers often use breach news to run phishing schemes of their own. A credit freeze with the three major bureaus is a reasonable precaution regardless of how this situation resolves.

If a breach is later confirmed, affected patients may have legal grounds to pursue compensation for exposed medical or personal data. The Lyon Firm has spent close to two decades representing people harmed by healthcare data breaches and works on contingency, so clients pay nothing unless money is recovered.

Anyone who receives a notice from Proliance Surgeons, or who has questions about their exposure, can reach out to a data breach lawyer for a free case review.

This article is based on third-party reporting, and nothing here confirms wrongdoing by Proliance Surgeons. Consult a licensed attorney about your specific situation.

Ransomware groups regularly post victim names before any data changes hands, sometimes to pressure a payout, sometimes based on incomplete or false information. Until Proliance Surgeons or a regulator confirms otherwise, this remains an allegation, and nothing here should be read as a finding that the company mishandled patient data or broke any law.

Contact Us

Request a Free Consultation

Taking the first step doesn’t have to be complicated. In just a few minutes, you can share the basics of your case, and our team will guide you from there:

  • It begins with a few simple questions about your situation.
  • From there, a member of our legal team reviews your case.
  • Together, we’ll chart the path forward, helping you take the next step toward resolution.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.