Lumexa Imaging
ent_64a7fbf309907ebbf65ff639
Disclosures
10
State AG · HHS OCR · 10 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
3,632
as filed · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Lumexa Imaging
- Normalized
- lumexa imaging— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (10)newest first
- ⛰️New Hampshire State AGas victim2026-06-12
Lumexa Imaging, a provider of administrative services to radiology practices, notified the NH Attorney General of a breach involving a third-party vendor. Between March 31 and April 9, 2026, an unauthorized individual accessed patient records, potentially exposing names, SSNs, DOBs, and clinical data for 186 NH residents. Lumexa disconnected systems, notified the AG on June 12, 2026, and offered credit monitoring via Kroll.
- 🌲Washington State AGas victim2026-06-12
Lumexa Imaging, a health sector entity reported a other incident to the Washington Attorney General. The organization became aware of the incident on 2026-04-15 and filed notice on 2026-06-12. 3,632 Washington residents were affected. 58 days elapsed between awareness and notification. 15 days to identify the breach. 0 days to contain the breach.
- 🍁Vermont State AGas victim2026-06-12
Lumexa Imaging reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-06-12. The reporting organization type is Health Care. 98 Vermont residents were affected. Categories of data breached: Social Security Numbers, Health Records.
- 🏛️Massachusetts State AGas victim2026-06-01
Lumexa Imaging, a provider of administrative services to radiology practices, disclosed a breach involving a third-party vendor's system. Between March 31 and April 9, 2026, an unauthorized individual accessed patient information, potentially including names, SSNs, DOBs, and clinical data. Lumexa disconnected systems, engaged Kroll for credit monitoring, and the vendor remediated by resetting passwords and enhancing monitoring. The incident affects residents in multiple states, primarily Massachusetts.
- ⭐Texas State AGas victim2026-05-18
Lumexa Imaging based in Raleigh, North Carolina, a healthcare – medical provider entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-04-15 and reported on 2026-05-18. 251 Texas residents were affected. 2,994 individuals affected in total. Types of information involved: Name of individual;Social Security Number Information;Medical Information;Health Insurance Information. Consumers were notified via U.S. Mail.
- 🌴South Carolina State AGas victim2026-05-18
Lumexa Imaging notified South Carolina residents that an unauthorized individual accessed a third-party vendor's system between March 31 and April 9, 2026. Patient information, including names, SSNs, DOBs, and clinical data, may have been viewed. Lumexa disconnected from the vendor and Kroll is providing identity monitoring.
- 🦫Oregon State AGas victim2026-05-15
Lumexa Imaging reported a data breach to the Oregon Attorney General. The breach was reported on 2026-05-15. The breach occurred during 3/31/2026 - 4/9/2026. The breach was discovered on 4/15/2026. 2,994 individuals were affected. Notice was sent on 5/15/2026.
- NCHHS OCRas victim2026-05-15
Lumexa Imaging reported to HHS on 2026-05-15 a Hacking/IT Incident affecting 2994 individuals. Breached information located on Network Server.
- 🦬Montana State AGas victim2026-05-15
Lumexa Imaging reported a data breach to the Montana Attorney General. The breach was reported on 2026-05-15. The breach occurred from 03/31/2026 to 04/09/2026. 1 Montana residents were affected.
- 🐻California State AGas victim2026-05-15
Lumexa Imaging notified patients that an unauthorized individual accessed a third-party vendor's system between March 31 and April 9, 2026. The vendor provided non-clinical operational support. Patient information, including names, SSNs, dates of birth, and clinical health data, may have been viewed or obtained. Lumexa disconnected systems from the vendor network and is offering identity monitoring via Kroll.
Subsidiary disclosures (8)filed by group companies
◈ These filings were made by or about subsidiaries of Lumexa Imaging — not by Lumexa Imaging itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- 🐻California State AGvia Radiology Ltd.2022-10-07
Radiology Ltd. disclosed a security incident occurring between December 17 and 24, 2021, where an unauthorized party accessed patient information. Affected data included names, addresses, DOBs, SSNs, and medical/financial details. The company notified law enforcement, engaged forensic investigators, and offered one year of Equifax Credit Watch Gold to affected individuals.
- 🦬Montana State AGvia Radiology Ltd.2022-09-02
Radiology Ltd. reported a data breach to the Montana Attorney General. The breach was reported on 2022-09-02. The breach occurred from 12/17/2021 to 12/24/2021. 51 Montana residents were affected.
- 🦬Montana State AGvia Gateway Diagnostic Imaging2022-09-02
Gateway Diagnostic Imaging reported a data breach to the Montana Attorney General. The breach was reported on 2022-09-02. The breach occurred from 12/17/2021 to 12/24/2021. 40 Montana residents were affected.
- 🦬Montana State AGvia Diversified Radiology of Colorado, Inc.2022-02-18
Diversified Radiology of Colorado, Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2022-02-18. The breach occurred from 12/17/2021 to 12/24/2021. 2 Montana residents were affected.
- 🦬Montana State AGvia Touchstone Medical Imaging, LLC2022-02-18
Touchstone Medical Imaging, LLC reported a data breach to the Montana Attorney General. The breach was reported on 2022-02-18. The breach occurred from 12/17/2021 to 12/24/2021. 6 Montana residents were affected.
- ⛰️New Hampshire State AGvia Touchstone Medical Imaging, LLC2022-02-18
Touchstone Medical Imaging, LLC reported a security incident in New Hampshire where an unauthorized party accessed the network between Dec 17-24, 2021, exfiltrating patient documents. One NH resident's name and SSN were compromised. TMI notified law enforcement, engaged forensic investigators, and offered one year of credit monitoring. The incident is contained.
- TNHHS OCRvia Touchstone Medical Imaging, LLC2014-10-03
Touchstone Medical Imaging, LLC reported to HHS on 2014-10-03 a Unauthorized Access/Disclosure affecting 307528 individuals. Breached information located on Network Server.
- 🐻California State AGvia Touchstone Medical Imaging, LLC2014-10-03
Touchstone Medical Imaging, LLC disclosed a data breach affecting patient billing records. A seldom-used folder containing patient information (names, DOB, SSN, address, insurer, radiology procedures) was inadvertently left accessible via the internet from before August 2012 until May 9, 2014. The folder was secured, and notifications were sent offering one year of credit monitoring.