Health Diagnostic Management, LLC
ent_194a56e9892835089cc0dca8
Disclosures
4
State AG · HHS OCR · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
1,863
nationwide · HHS OCR NY
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Health Diagnostic Management, LLC
- Normalized
- health diagnostic management— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- New Hampshire State AGas victim2023-12-12
Health Diagnostic Management, LLC (HDM) notified the New Hampshire Attorney General of a data event affecting 2 NH residents. On or about Oct 12, 2023, an unauthorized actor accessed HDM's patient portal using valid credentials of a referring physician (Brooklyn Premiere Orthopedics). The vendor detected suspicious activity on Oct 13, 2023. Affected data included names and potentially government IDs. HDM notified customers on Oct 16, 2023, and offered credit monitoring via Experian.
- Massachusetts State AGas victim2023-12-12
Health Diagnostic Management, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-12-12. 2 Massachusetts residents were affected. The report records the breach type as electronic.
- NEW YORKHHS OCRas victim2023-12-12
Health Diagnostic Management, LLC reported to HHS on 2023-12-12 a Hacking/IT Incident affecting 1,863 individuals. Breached information located on Network Server. The incident involved PHI including names, addresses, DOB, driver's license numbers, diagnoses, and medications. The covered entity offered free credit monitoring and implemented additional safeguards.
- Illinois State AGas victim2023-01-01
HEALTH DIAGNOSTIC MANAGEMENT, LLC filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-837). The register records the breach as discovered on October 13, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.