DisclosureLens
HackingHealthcareHealthcareCustomer Data InvolvedPHIHealth (basic)Identity (basic)LowContained

Valley Radiology

bd_7d1cc52a7503a657 · schema v1 · pii pii-v1

Severity

Low

Discovered

Sep 15, 2025

Filed

Mar 2, 2026

To disclose

24 weeks

Affected

Not disclosed

Confidence

65%
Full breach record for Valley Radiology2 incidents on file

Valley Radiology Consultants Medical Group Inc detected suspicious activity on its computer systems on September 15, 2025. An unauthorized actor accessed certain files, including patient files. The breach date listed by the CA AG is September 12, 2025. The organization secured systems, engaged a third-party cybersecurity firm, disconnected network access, and changed passwords. Affected individuals are offered 12 months of credit monitoring and fraud assistance.

California clockDiscovered Sep 15, 2025Notified Feb 26, 2026164d CA 60-day late24 weeks discovery → filing

Incident timeline

undetected · 3 days
discovery → filing · 24 weeks / 168 days

Sep 12, 2025

Begins

Sep 15, 2025

Discovered

Mar 2, 2026

Filed

vs. sector median

+13 wks slower

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.