IMA
ent_829aa074e4fb084182fc519b
Disclosures
7
State AG · 7 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
525,306
nationwide · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- IMA
- Normalized
- ima— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- imanet.org
Disclosure history (7)newest first
- South Carolina State AGas reporting2026-06-01
IMA Diligence Services, LLC notified South Carolina and other state regulators of a breach involving a decommissioned third-party legacy server. Unauthorized access occurred between Dec 8-16, 2025, exposing names and limited PII. No misuse confirmed. 12 months credit monitoring offered. ~1,464 Rhode Island residents impacted; total count undisclosed.
- Oregon State AGas reporting2026-05-29
IMA Diligence Services, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2026-05-29. The breach occurred during 12/8/2025 - 12/16/2025. The breach was discovered on 1/1/0001. 525,306 individuals were affected. Notice was sent on 5/29/2026.
- Vermont State AGas reporting2026-05-29
IMA Diligence Services, LLC reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-05-29. The reporting organization type is Other Commercial. 40 Vermont residents were affected. Categories of data breached: Social Security Numbers, Government ID Numbers, Financial Account Codes, Credit and Debit Account Info, Health Records.
- Indiana State AGas victim2026-05-29
IMA Diligence Services LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2025-12-08 and was reported on 2026-05-29. 3,392 Indiana residents were affected. 525,306 individuals affected in total.
- California State AGas reporting2026-05-29
IMA Diligence Services, LLC notified the California Attorney General of a data breach affecting personal information. An unauthorized actor accessed files on a legacy server managed by a third-party between December 8 and December 16, 2025. The company discovered the incident on December 16, 2025. Affected data includes names and potentially other personal information. The company engaged cybersecurity specialists, notified law enforcement, and is offering 12 months of credit monitoring to affected individuals. The incident is contained.
- Washington State AGas reporting2026-05-29
IMA Diligence Services, LLC reported a ransomware incident affecting 1,977 Washington residents. Unauthorized access occurred between Dec 8-16, 2025, on a legacy third-party server. Data exposed included names, SSNs, driver's licenses, financial accounts, and PHI. The company engaged forensic specialists, notified law enforcement, and provided 12 months of credit monitoring.
- Massachusetts State AGas reporting2026-05-29
IMA Diligence Services, LLC notified Massachusetts residents of a cybersecurity incident affecting their information security. The company implemented enhanced email tenant safeguards, staff training, and offered 24 months of free credit monitoring via Cyberscout/TransUnion. No identity theft or fraud was confirmed.