IMX Medical Management Services
ent_79f0ad1d4e9548943ca22d99
Disclosures
9
State AG · 8 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
7,589
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- IMX Medical Management Services
- Normalized
- imx medical management— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (9)newest first
- New Hampshire State AGas victim2023-08-01
IMX Medical Management Services discovered malware on a laptop in September 2022, with indicators possibly dating to June 2022. The threat actor accessed email bodies and server folders containing employee personal information. Systems were taken offline in October 2022. Approximately 7 New Hampshire residents were affected. IMX notified law enforcement and offered credit monitoring.
- California State AGas victim2023-07-27
IMX Medical Management Services, Inc. discovered malware on a laptop in September 2022, with indicators possibly dating to June 2022. A threat actor accessed email bodies and server folders containing PHI and PII for claimants, employees, and providers through October 2022. IMX took systems offline, engaged forensics, notified law enforcement, and migrated to a new network operated by parent company QTC. No evidence of exfiltration was confirmed, but access to email bodies occurred.
- Montana State AGas victim2023-07-27
IMX Medical Management Services, Inc. notified affected individuals of a security incident discovered on September 1, 2022, involving malware on a laptop as early as June 2022. A threat actor accessed email bodies and server folders containing PII and PHI. IMX took systems offline, engaged forensic investigators, notified law enforcement, and established a new network via parent company QTC. Two years of credit monitoring are offered.
- Delaware State AGas victim2023-07-27
IMX Medical Management Services, Inc. disclosed a security incident discovered on September 1, 2022, involving malware on a single laptop as early as June 2022. A threat actor gained access to IMX systems through October 2022. The incident potentially exposed personal and protected health information of employees, providers, and claimants. IMX took systems offline, engaged in forensic investigation, notified law enforcement, and migrated operations to a new QTC-operated network. Affected individuals were offered two years of credit monitoring.
- Massachusetts State AGas victim2023-07-27
IMX Medical Management Serivces reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-07-27. 25 Massachusetts residents were affected. The report records the breach type as electronic.
- Vermont State AGas victim2023-07-27
IMX Medical Management Services, Inc. disclosed a security incident discovered on September 1, 2022, involving malware on a laptop as early as June 2022. The threat actor accessed certain IMX systems and devices through October 2022, gaining access to email bodies and server folders containing personal and protected health information of claimants. IMX took systems offline, engaged in forensic investigation, and notified law enforcement. The company established a new network via parent company QTC Management, Inc., and offered two years of credit monitoring to affected individuals.
- Indiana State AGas victim2023-07-21
IMX Medical Management Services reported a data breach to the Indiana Attorney General. The breach occurred on 2023-06-01 and was reported on 2023-07-21. 11 Indiana residents were affected. 7,589 individuals affected in total.
- Maine State AGas victim2023-07-12
IMX Medical Management Services reported an external system breach that occurred between June 2022 and October 26, 2022. The breach, discovered on September 1, 2022, affected three Maine residents. The compromised information included names and driver's license or non-driver identification card numbers. IMX offered 24 months of complimentary credit monitoring and identity protection services through Equifax to those affected.
- Massachusetts State AGas victim2016-09-23
IMX Medical Management Services, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2016-09-23. 7 Massachusetts residents were affected. The report records the breach type as electronic.