[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f2kren442k83q2":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"publishedAt":13,"modifiedDate":12,"contentUpdatedAt":14,"source":15,"sourceUrl":16,"sourceUrls":17,"pwnCount":22,"affectedCount":22,"affectedCountStatus":23,"affectedCountLowerBound":13,"affectedCountUnit":24,"hasEnglishDescription":4,"contentLocale":25,"availableLocales":26,"translations":28,"severity":31,"dataClasses":32,"description":37,"seoTitle":8,"seoDescription":38,"logoUrl":39,"isVerified":4,"isSensitive":4,"isSpamList":40,"isMalware":40,"company":41},"6a4ce50cc023473ac3ce5f47","Radiology Associates of Richmond (2025)","Radiology Associates of Richmond (2025) Data Breach","radiology-associates-of-richmond-2025","rarichmond.com","2025-07-25T00:00:00.000Z","2026-07-07T11:37:48.665Z",null,"2026-07-18T23:21:38.551Z","Manual reviewed breach record","https:\u002F\u002Frarichmond.com\u002Fnotice-of-data-security-incident\u002F",[16,18,19,20,21],"https:\u002F\u002Focrportal.hhs.gov\u002Focr\u002Fbreach\u002Fbreach_report_hip.jsf","https:\u002F\u002Fwww.hipaajournal.com\u002Fradiology-associates-of-richmond-data-breach\u002F","https:\u002F\u002Fwww.securityweek.com\u002F266000-affected-by-data-breach-at-radiology-associates-of-richmond\u002F","https:\u002F\u002Frarichmond.com\u002Fabout\u002F",266183,"known","unknown","en",[25,27],"tr",{"en":29,"tr":30},{"slug":9},{"slug":9},"High",[33,34,35,36],"Names","Social security numbers","Medical information","Protected health information","\u003Cp>The Radiology Associates of Richmond (2025) data breach is related to an unauthorized access incident that occurred around July 25, 2025 on the Virginia-based radiology and medical imaging organization's network environment. In the notification published by the institution, it was stated that an unauthorized person accessed the network environment, that an investigation was carried out with external security experts to secure the environment after the incident, and that the comprehensive file review was completed around April 6, 2026. As a result of the investigation, it was understood that files containing protected health information belonging to a limited number of people were obtained unauthorized. Notifications began to be sent around May 21, 2026, and the official health violation record lists the number of people affected as 266,183. This record has been prepared for the 2025 event only, separate from older events associated with the same institution.\u003C\u002Fp>\u003Ch2>Leaked Data Types and Risks\u003C\u002Fh2>\u003Cp>The scope of data verified in this case is first name, surname, Social Security number for some individuals, and protected health information. Because the agency's public notice does not list all data types in detail, only explicitly supported fields are used in this record. Protected health information may include sensitive records related to the radiology service, imaging process, patient relationship, examination, or healthcare history. People with a Social Security number are at higher risk of identity theft, fraudulent applications, credit file abuse, and targeted fraud. Health information can be used in fraudulent invoices, insurance disclosure document abuse, unrecognized service notifications and misleading communications carried out on behalf of the patient. Even combining name data with healthcare context increases the risk of personalized messages and calls.\u003C\u002Fp>\u003Ch2>Verified Scope and Limits\u003C\u002Fh2>\u003Cp>Verified contact coverage for Radiology Associates of Richmond is 266,183 individuals. July 25, 2025, where unauthorized access was stated to have occurred, was used as the date of the incident. Since the date of first discovery was not clearly stated in the institution's public notification, April 6, 2026 was considered as the stage when the file review was concluded and it was determined that personal health data may have been affected. May 21, 2026 is the date when the notification process begins. Data types are not the same for every affected person; A Social Security number is available only to individuals who have this field in their respective files. The internal record count has not been inflated separately from the official contact total because a separate leak row volume has not been verified. This record does not include coverage of other RAR incidents from previous years.\u003C\u002Fp>\u003Ch2>User Groups at Risk\u003C\u002Fh2>\u003Cp>The highest risk group includes current and former patients who have performed a radiology, imaging, exam, patient referral, billing, insurance approval or medical evaluation process through Radiology Associates of Richmond. Individuals whose Social Security numbers are affected should consider credit file and identity verification risk first. Users with health information should regularly check disclosure documents for any imaging services, clinical procedures, providers, debts, payments, invoices, or reimbursement requests that they do not recognize. Patient relationship data could allow attackers to craft messages that address the individual by name and appear close to their actual healthcare history. Therefore, users need to monitor not only financial accounts but also health insurance and patient portal movements.\u003C\u002Fp>\u003Ch2>Urgent Measures to Be Taken\u003C\u002Fh2>\u003Cp>Users who see a match in this breach should first check which data fields are affected in the official notification letter they receive. If a Social Security number has been reported, credit reports should be examined, and if an unrecognized account opening or credit inquiry is detected, the objection process should be initiated without delay. When necessary, credit freezing or fraud warning options should be considered. Persons whose protected health information may have been affected should regularly review patient accounts and insurance disclosure documents, and when they see services not received or unrecognized invoices, they should contact the relevant institution through known communication channels. For unexpected messages with a radiology, payment, insurance or appointment theme, the sender must be verified before clicking on the link.\u003C\u002Fp>\u003Ch2>Long-Term Security Strategies\u003C\u002Fh2>\u003Cp>The risk in such health data events is not limited to a single account password and requires long-term monitoring. Users should periodically check their credit files, keep patient portal and health insurance account notifications open, and archive notifications of unrecognized medical services or debts. When requests for identity, payment or health details come from people calling on behalf of a healthcare provider, insurance company or collection unit, they should be answered directly via known numbers. Users whose Social Security numbers are affected should remember that this information is an identification field that cannot be changed and should continue to monitor credit, tax, insurance and healthcare notifications in the following months. Documents containing health information should be stored securely and not shared on unnecessary channels.\u003C\u002Fp>\u003Ch2>Record Control and User Action\u003C\u002Fh2>\u003Cp>A match on the Radiology Associates of Richmond (2025) data breach check on LeakData indicates that the individual may be in the record group associated with this 2025 incident. Users who receive a match should not only change their password; It should evaluate identity, credit, health insurance and patient record risks together. No match does not mean absolute risk-free; Some people may have received notifications by mail, or the record match may not cover all areas of the person. It is recommended that people who have previously received imaging or radiology services from this institution keep their notification letters, document suspicious health or financial movements and share them with the institution, and not enter personal information in unexpected connections. This record is limited to the number of verified individuals and clearly supported data types.\u003C\u002Fp>","Radiology Associates of Richmond (2025) Data Breach. 266.2 Thousand reported records are reported. Reported data: Names, Social security numbers, Medical…","\u002Fuploads\u002Flogo\u002Fradiology-associates-of-richmond.png",false,{"name":42,"sector":43,"country":44,"website":10,"websiteArchiveUrl":45,"websiteStatus":45,"websiteCheckedAt":13},"Radiology Associates of Richmond","Healthcare","United States",""]