IMA
ent_829aa074e4fb084182fc519b
Disclosures
11
State AG · 11 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
525,306
as filed · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- IMA
- Normalized
- ima— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- imanet.org
Disclosure history (11)newest first
- ⭐Texas State AGas reporting2026-06-01
IMA Diligence Services, LLC based in Wichita, Kansas, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-05-04 and reported on 2026-06-01. 70,928 Texas residents were affected. 525,306 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Financial Information (e.g. account number, credit or debit card number);Medical Information;Health Insurance Information. Consumers were notified via U.S. Mail.
- 🌴South Carolina State AGas victim2026-06-01
IMA Diligence Services, LLC notified South Carolina and other state regulators of a breach involving a decommissioned third-party legacy server. Unauthorized access occurred between Dec 8-16, 2025, exposing names and limited PII. No misuse confirmed. 12 months credit monitoring offered. ~1,464 Rhode Island residents impacted; total count undisclosed.
- 🦞Maine State AGas victim2026-05-29
Maine Attorney General notice regarding an external system breach (hacking) affecting IMA Diligence Services, LLC. The breach occurred on 12/08/2025 and was discovered on 05/04/2026. Notification was sent on 05/29/2026. The filing does not specify the number of affected individuals or specific data types acquired, but identity theft protection services (12 months credit monitoring via Transunion) were offered.
- 🦫Oregon State AGas victim2026-05-29
IMA Diligence Services, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2026-05-29. The breach occurred during 12/8/2025 - 12/16/2025. The breach was discovered on 1/1/0001. 525,306 individuals were affected. Notice was sent on 5/29/2026.
- ⛰️New Hampshire State AGas victim2026-05-29
IMA Diligence Services, LLC reported a data event affecting 200 New Hampshire residents. Unauthorized access occurred on a legacy third-party server between December 8 and December 16, 2025. Exposed data included names, driver's license numbers, Social Security numbers, and financial account information. IMA Diligence engaged forensic specialists, notified law enforcement, and provided 12 months of credit monitoring via TransUnion/Cyberscout. Notice was filed with the NH Attorney General on May 29, 2026.
- 🍁Vermont State AGas victim2026-05-29
IMA Diligence Services, LLC reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-05-29. The reporting organization type is Other Commercial. 40 Vermont residents were affected. Categories of data breached: Social Security Numbers, Government ID Numbers, Financial Account Codes, Credit and Debit Account Info, Health Records.
- 🏎️Indiana State AGas victim2026-05-29
IMA Diligence Services LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2025-12-08 and was reported on 2026-05-29. 3,392 Indiana residents were affected. 525,306 individuals affected in total.
- 💎Delaware State AGas victim2026-05-29
IMA Diligence Services, LLC notified Rhode Island residents that an unauthorized actor accessed a decommissioned third-party file server between Dec 8-16, 2025. The incident involved the exfiltration of names and identity data affecting approximately 1,464 individuals. IMA engaged forensic specialists, notified law enforcement, and provided 12 months of credit monitoring via Cyberscout.
- 🐻California State AGas victim2026-05-29
IMA Diligence Services, LLC notified the California Attorney General of a data breach affecting personal information. An unauthorized actor accessed files on a legacy server managed by a third-party between December 8 and December 16, 2025. The company discovered the incident on December 16, 2025. Affected data includes names and potentially other personal information. The company engaged cybersecurity specialists, notified law enforcement, and is offering 12 months of credit monitoring to affected individuals. The incident is contained.
- 🌲Washington State AGas victim2026-05-29
IMA Diligence Services, LLC, a business sector entity reported a ransomware incident to the Washington Attorney General. The organization became aware of the incident on 2025-12-16 and filed notice on 2026-05-29. 1,977 Washington residents were affected. 164 days elapsed between awareness and notification. 8 days to identify the breach. 0 days to contain the breach.
- 🏛️Massachusetts State AGas victim2026-05-01
IMA Diligence Services, LLC notified Massachusetts residents of a cybersecurity incident affecting their information security. The company implemented enhanced email tenant safeguards, staff training, and offered 24 months of free credit monitoring via Cyberscout/TransUnion. No identity theft or fraud was confirmed.