Centers Laboratory Breach Exposes 542,377 Records
Centers Laboratory disclosed an August 2025 intrusion exposed personal and protected health data for 542,377 people, including SSNs, IDs, passports and medical and insurance records.
Centers Laboratory, a New Jersey testing and laboratory services provider, reported that an intrusion in August 2025 exposed personal and protected health information for 542,377 individuals. The company notified federal authorities and posted a breach notice on its website.
The breach notice lists the categories of compromised data as names, dates of birth, Social Security numbers, driver’s license or state identification numbers, passport numbers, and health insurance and medical information.
An internal investigation found that threat actors gained “limited access” to Centers Laboratory systems between August 9 and August 14, 2025, and removed data during that window. The Department of Health and Human Services’ breach tracker records the incident as affecting 542,377 people.
Security researchers and monitoring groups attributed the incident to the WorldLeaks cybercrime group. WorldLeaks added Centers Laboratory to its public listings in October 2025 and posted more than 1.6 million files, totaling roughly 720 gigabytes, that it says were taken from the company’s systems.
WorldLeaks emerged in 2025 after the shutdown of the Hunters International ransomware group. The group has shifted from encrypting files to stealing data and seeking extortion; its site lists more than 170 organizations.
Centers Laboratory said it has begun notifying affected individuals and notified the U.S. government. The company’s public notice identifies the types of information exposed but does not describe how attackers gained initial access or list any completed remediation steps. No technical incident report or timeline for completing forensic analysis has been provided.
The records identified in the notice include government-issued identification numbers and medical and insurance information commonly used for patient identification and billing. The company did not provide a detailed breakdown of which records were contained in the files posted by the threat actors.
The breach follows other recent incidents in the healthcare sector that have exposed large volumes of patient data. Investigations into the Centers Laboratory intrusion remain ongoing.








