Skip to content
Ransomware Attack Targets University of Illinois Chicago's College of Medicine

Ransomware Attack Targets University of Illinois Chicago's College of Medicine

First seen 6 Oct 2026, 10:27 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 6, 2026 at 11:27 UTC
  • •Ransomware attack by Booba group affects UIC's College of Medicine.
  • •344 gigabytes of data reportedly stolen; investigation ongoing.
  • •No impact on main university network or patient care delivery.

The University of Illinois Chicago (UIC) reported a ransomware attack affecting its College of Medicine, which limited access to some systems and resulted in data theft. The attack was attributed to a ransomware group named Booba, which claimed to have stolen 344 gigabytes of data. UIC's IT staff activated incident response protocols and engaged cybersecurity experts to investigate the breach. Affected systems have since been restored, and the university confirmed that its main network and patient care delivery were not impacted. The university is conducting a forensic investigation to determine the extent of compromised data, including personal, research, or academic information. Law enforcement has been notified, and UIC plans to inform affected individuals once the investigation concludes. Booba has been active since July 2026 and has claimed responsibility for 49 attacks to date.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-10-05
Ransomware attack discovered
UIC identified unauthorized activity in the College of Medicine network, triggering incident response protocols.
Therecord.Media
2026-10-06
Public disclosure of attack
UIC publicly confirmed the ransomware attack and the involvement of the Booba group, detailing the data theft and response efforts.
Teiss

More articles in this cluster (4)

Following this threat?

Track Booba and Merrimack County in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

What data was stolen in the attack?
The investigation is ongoing to determine whether personal, research, or academic information was compromised.
How is UIC responding to the attack?
UIC has activated incident response protocols, engaged cybersecurity experts, and is coordinating with law enforcement.
Will affected individuals be notified?
Yes, UIC plans to notify individuals once the investigation into the compromised data is complete.