Ransomware Group thegentlemen Hits: Northern NJ Eye Institute
Summary
In the latest cybersecurity news, Northern NJ Eye Institute — an organization based in US — has fallen victim to a ransomware attack conducted by the group thegentlemen. This data breach, discovered on 2026-09-30T03:36:33.004280+00:00, underscores the increasing need for proactive cybersecurity defenses as we continue through 2026.
Incident Report
| Attribute | Information |
|---|---|
| Target Organization | Northern NJ Eye Institute |
| Threat Group | thegentlemen |
| Summary | nnjei.com zoominfo.com/c/northern-nj-eye-institute/70059294 Northern New Jersey Eye Institute / NNJEI (30+ years, nnjei.com, South Orange, NJ) is a family-run ophthalmology practice and ambulatory surgery center with clinics in South Orange, West Caldwell and Elizabeth. It treats cataracts (its signature “no-needle, no-stitch, no-patch” surgery), LASIK/LASEK/PRK vision correction, glaucoma, corneal and retinal disease, diabetic eye care and cosmetic eye services, with its own AAAHC-accredited operating room and acceptance of Medicare plus 13+ insurance plans. Its standout edge is clinical research: lead surgeon Charles J. Crane, MD (4.9/5 from 127 Zocdoc reviews, NJ Top Docs 2024) was among the first ~100 doctors in the US to implant the Glaukos iDose TR and among fewer than 15 in FDA trials for iStent infinite — pioneering MIGS glaucoma treatments, with results published in 2025–26 journals. The practice books about $3.2M revenue with 15–18 staff and holds a solid 79/100 CMS MIPS |
| Date of Breach | 2026-09-29T15:50:56+00:00 |
| Discovery Date | 2026-09-30T03:36:33.004280+00:00 |
| Region | US |
| Target Domain | nnjei.com |
| Business Sector | Healthcare |
How to reduce your ransomware risk
Most ransomware intrusions start with a stolen password or a phishing email. A few proactive steps sharply cut your exposure:
- monitor the dark web for leaked logins — close the gap attackers exploit.
- continuous breach monitoring — close the gap attackers exploit.
Want to know if you’re already exposed? Run a free scan with the HookPhish data breach checker.
Disclaimer
HookPhish does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.
