Touchstone Medical Imaging, LLC
ent_019e0cec78599fa26f1d8a01d41bf357
Disclosures
6
State AG · HHS OCR enforcement · HHS OCR · 6 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
307,528
nationwide · HHS OCR TN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Touchstone Medical Imaging, LLC
- Normalized
- touchstone medical imaging— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300OT2M72E8D0W057
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
- Corporate parent
- Lumexa Imaging— per SEC Exhibit 21 filing
Disclosure history (6)newest first
- Montana State AGas victim2022-02-18
Touchstone Medical Imaging, LLC reported that between Dec 17-24, 2021, an unauthorized party accessed its network and copied patient documents. Data included names, SSNs, DOBs, and PHI. The company notified law enforcement, engaged forensic investigators, and enhanced security safeguards. No fraud evidence found.
- New Hampshire State AGas victim2022-02-18
Touchstone Medical Imaging, LLC reported a security incident in New Hampshire where an unauthorized party accessed the network between Dec 17-24, 2021, exfiltrating patient documents. One NH resident's name and SSN were compromised. TMI notified law enforcement, engaged forensic investigators, and offered one year of credit monitoring. The incident is contained.
- Illinois State AGas victim2022-01-01
TOUCHSTONE MEDICAL IMAGING, LLC filed a data-breach notice with the Illinois Attorney General during 2022 (case 2022-133). The register records the breach as discovered on December 24, 2021. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- FEDERALHHS OCR enforcementas victim2019-05-06
Tennessee Diagnostic Medical Imaging Services Company (Touchstone) paid $3,000,000 to settle potential HIPAA Security and Breach Notification Rules violations involving a breach exposing over 300,000 patients' protected health information.
- TENNESSEEHHS OCRas victim2014-10-03
Touchstone Medical Imaging, LLC reported to HHS on 2014-10-03 a Unauthorized Access/Disclosure affecting 307528 individuals. Breached information located on Network Server.
- California State AGas victim2014-10-03
Touchstone Medical Imaging, LLC disclosed that a folder containing patient billing information (including SSNs, names, DOBs, and diagnoses) was inadvertently left accessible via the internet. The company discovered the exposure on May 9, 2014, and immediately secured the folder. An internal investigation initially suggested the data was unreadable, but later confirmed it may have been readable. No improper use was known. The company offered one year of credit monitoring to affected individuals.