TRJ BLACK FILE — Health Sector Breach Watch
Category: Healthcare Sector Ransomware
Features: Double extortion, encrypted systems, government-linked data risk
Delivery Method: Unknown (under forensic investigation)
Threat Actor: Sarcoma Group — Double Extortion Syndicate (Emergent)
THE BREACH
It began quietly — a back-end systems anomaly.
But within days, it escalated into a full-blown data hostage crisis.
Radix, a Zurich-based nonprofit health organization that manages public health campaigns and digital counseling platforms across Switzerland, confirmed that it was the target of a ransomware breach executed by the Sarcoma group — a rising digital extortion outfit that operates under the radar yet with increasing precision.
The incident unfolded in early June 2025, and by mid-month, Sarcoma had publicly posted proof-of-hack evidence on their dark web leak site, claiming to have exfiltrated 2 terabytes of internal data. The group issued a one-week ultimatum for Radix to pay an undisclosed ransom or face full public disclosure of the stolen information.
INTELLIGENCE BREAKDOWN: SARCOMA GROUP
Threat Actor: Sarcoma
Active Since: October 2024
Model: Double Extortion — Encrypt local systems and exfiltrate sensitive files for public leak leverage
Known Targets:
- Unimicron (Taiwan) — Printed circuit board manufacturer hit in February 2025
- Radix (Switzerland) — Public health nonprofit
Likely Origin: Suspected operators linked to Eastern European cybercrime clusters with infrastructure overlaps observed in REvil and ALPHV disbandment residues
Leak Site Infrastructure: .onion-based extortion portal, updated in real-time with victim pressure tactics and exfiltration proof dumps
Sarcoma follows a cold and calculated attack pattern:
Breach quietly through unmonitored endpoints
Exfiltrate data before payload drop
Encrypt the network
Publish partial data as proof
Wait for panic — then demand silence money
In Radix’s case, file encryption was confirmed — though the full scale of exfiltrated data is still under triage.
THE TARGET: RADIX HEALTH PROGRAMS
Radix is not a commercial firm. It’s a national health mission hub, managing Swiss-funded platforms such as:
- SafeZone — An anonymous mental health counseling service
- StopSmoking — A nicotine cessation guidance portal
- Health awareness campaigns interfacing with multiple Swiss federal offices
According to Swiss government statements, “various federal offices” are clients of Radix, though the nonprofit does not have direct backend access to government systems.
Even so, the presence of federal client data — even in metadata, logs, or administrative oversight notes — raises alarms. Especially in a post-GDPR Europe where health and state-linked identity data are prime targets on the dark web.
Switzerland’s Federal Office of Public Health confirmed that SafeZone and StopSmoking were not directly impacted, citing separate hosting architecture. However, the nonprofit’s core systems — where inter-program routing, reporting, and case management live — were hit hard.
THE WIDER IMPLICATIONS: SILENT BREACHES IN SAFE SPACES
This breach goes beyond ransomware.
It strikes at the heart of what people assume is untouchable: anonymous mental health platforms. Government-trusted nonprofits. Health-safe digital zones.
Even if sensitive patient content was untouched, the public perception of trust in digital mental health infrastructure just took a hit — and that ripple has global consequences.
“There is currently no indication that particularly sensitive data has been affected by the cyberattack,”
said Switzerland’s Federal Office of Public Health.
That’s the kind of statement issued when data can’t yet be ruled out — not when it’s safe.
BACKUPS, REVOCATION & THE GAP
Radix confirmed it could restore affected systems from backups.
It also stated that access was revoked immediately upon detection.
But what stands out is this:
- The method of attack remains unidentified
- The entry point remains unconfirmed
- No statement has been made about ransom negotiations
This implies that internal controls were reactive, not preemptive. While recovery was possible, detection lag and attack vector uncertainty point to security posture vulnerabilities — the kind exploited by low-noise, data-first ransomware groups like Sarcoma.
TRJ INTEL VERDICT
This is a warning shot.
- A nonprofit running government-sponsored health portals.
- A stealth extortion group operating outside typical threat maps.
- A 2-terabyte exfiltration, followed by a ransom window.
- And no clear public admission of data contents, recovery details, or ransom response.
The Sarcoma breach at Radix represents the fragility of public health infrastructure in the face of emerging ransomware cartels. It’s not just hospitals or insurance providers anymore. It’s the facilitators of mental health, counseling, and public outreach.
We are now living in an era where even anonymous help lines are on the targeting list.
This isn’t about money.
It’s about control, chaos, and forcing accountability through exposure.
TRJ BLACK FILE // INCIDENT SNAPSHOT
Victim: Radix (Zurich, Switzerland)
Date of Breach: Early June 2025
Breach Type: Ransomware + Data Exfiltration
Actor: Sarcoma Group
Data Exfiltrated: 2 TB (claimed) — content under investigation
Impact Zone: Switzerland, Germany, mental health portals
Recovery Status: Backup confirmed, ongoing investigation
Exposure Risk: Swiss federal office client metadata
Negotiation Status: Undisclosed
🔥 NOW AVAILABLE! 🔥
📖 INK & FIRE: BOOK 1 📖
A bold and unapologetic collection of poetry that ignites the soul. Ink & Fire dives deep into raw emotions, truth, and the human experience—unfiltered and untamed.
🔥 Kindle Edition 👉 https://a.co/d/9EoGKzh
🔥 Paperback 👉 https://a.co/d/9EoGKzh
🔥 Hardcover Edition 👉 https://a.co/d/0ITmDIB
Get your copy today and experience poetry like never before. #InkAndFire #PoetryUnleashed #FuelTheFire
🚨 NOW AVAILABLE! 🚨
📖 THE INEVITABLE: THE DAWN OF A NEW ERA 📖
A powerful, eye-opening read that challenges the status quo and explores the future unfolding before us. Dive into a journey of truth, change, and the forces shaping our world.
🔥 Kindle Edition 👉 https://a.co/d/0FzX6MH
🔥 Paperback 👉 https://a.co/d/2IsxLof
🔥 Hardcover Edition 👉 https://a.co/d/bz01raP
Get your copy today and be part of the new era. #TheInevitable #TruthUnveiled #NewEra
🚀 NOW AVAILABLE! 🚀
📖 THE FORGOTTEN OUTPOST 📖
The Cold War Moon Base They Swore Never Existed
What if the moon landing was just the cover story?
Dive into the boldest investigation The Realist Juggernaut has ever published—featuring declassified files, ghost missions, whistleblower testimony, and black-budget secrets buried in lunar dust.
🔥 Kindle Edition 👉 https://a.co/d/2Mu03Iu
🛸 Paperback Coming Soon
Discover the base they never wanted you to find. TheForgottenOutpost #RealistJuggernaut #MoonBaseTruth #ColdWarSecrets #Declassified
Support truth, health, and preparedness by shopping the Alex Jones Store through our link. Every purchase helps sustain independent voices and earns us a 10% share to fuel our mission. Shop now and make a difference!
https://thealexjonesstore.com?sca_ref=7730615.EU54Mw6oyLATer7a

