Ransomware group interlock hits Riviera Healthcare Center
Riviera Healthcare Center — a healthcare target operating in US has been listed by the interlock ransomware group on 2026-10-07. The information below reflects what the threat actor has publicly claimed on their leak site; the details have not been independently verified.
Incident Report
| Target Organization | Riviera Healthcare Center |
|---|---|
| Threat Group | interlock |
| Summary | Riviera Healthcare Center is a for-profit skilled nursing facility in operation for over 50 years. It provides 24-hour nursing and rehabilitation services. Due to negligence and poor security practices, confidential data was exposed, including patient protected health information (PHI)names, diagnoses, medical histories, fall/fracture and treatment information, payment records, and employee/HR data. This breach violates HIPAA and the California CMIA (and potentially the CCPA/CPRA) and will result in mandatory breach notification, federal and state fines, civil lawsuits, corrective action plans, and significant reputational and financial damage. |
| Date of Breach | 2026-10-07 |
| Discovery Date | 2026-10-07 |
| Region | US |
| Target Domain | https:rivierahealthcare.com |
| Business Sector | Healthcare |
| Severity | MEDIUM |
Claim by interlock
Riviera Healthcare Center is a for-profit skilled nursing facility in operation for over 50 years. It provides 24-hour nursing and rehabilitation services. Due to negligence and poor security practices, confidential data was exposed, including patient protected health information (PHI)names, diagnoses, medical histories, fall/fracture and treatment information, payment records, and employee/HR data. This breach violates HIPAA and the California CMIA (and potentially the CCPA/CPRA) and will result in mandatory breach notification, federal and state fines, civil lawsuits, corrective action plans, and significant reputational and financial damage.
Posted by the interlock threat actor on its public leak site. This is the group's own statement and has not been independently verified by HackerFeeds.
Sources
Victim website
https:rivierahealthcare.com
Leak post (onion / Tor)
http://puvoz5h52oepibye5hqzvfyhqhsfxzmzkr7v4tjtioxe3qaao2b6faqd.onion/index.php?p=
Open this URL in Tor Browser. Browsing leak sites carries real risk — view passively, never click further.
Disclaimer
HackerFeeds does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.

