[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fayiIae0O_Lku2xUb-Z-1KWbG0rVihskkZaM0ansz8GU":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"company":11,"breachDate":15,"addedDate":16,"modifiedDate":16,"pwnCount":17,"totalRecords":17,"dataClasses":18,"description":31,"source":32,"isVerified":4,"isSpamList":33,"isSensitive":4,"processingStatus":34,"logoUrl":35,"contentUpdatedAt":16,"hasEnglishDescription":4,"severity":36},"6a675315025ec1e8ef185a2d","GreenImaging2025","Green Imaging 2025 Data Breach","green-imaging-2025","greenimaging.net",{"name":12,"sector":13,"country":14,"website":10},"Green Imaging, LLC","Healthcare","United States","2025-10-07T00:00:00.000Z","2026-07-27T12:46:13.002Z",29517,[19,20,21,22,23,24,25,26,27,28,29,30],"Names","Addresses","Dates of birth","Social Security numbers","Driver’s license numbers","Other government-issued identification numbers","Clinical or treatment information","Diagnoses or conditions","Procedure types","Physician information","Medications","Health or health-insurance information","\u003Cp>\u003Cstrong>The Green Imaging 2025 data breach\u003C\u002Fstrong> involved unauthorized access to a single user email account belonging to the virtual medical-imaging network between October 7 and October 17, 2025. Green Imaging detected suspicious activity October 17, determined that information in the account may have been accessed or copied, and began a notification process for certain current and former patients.\u003C\u002Fp>\n\u003Cp>The U.S. Department of Health and Human Services Office for Civil Rights portal lists 29,517 affected individuals for Green Imaging, LLC and classifies the event as a “Hacking\u002FIT Incident” located in “Email.” The reported 5,016 Texas residents are a state subset of that overall figure. No person-level data was imported into LeakData, so importedRecordCount is zero.\u003C\u002Fp>\n\u003Ch2>How Was the Green Imaging Breach Confirmed?\u003C\u002Fh2>\n\u003Cp>The primary source is Green Imaging's public data-privacy notice. Although the original PDF path on the company site returned 404 when reviewed, a preserved copy of the document provides the incident dates, single-user account scope, data types, response steps, and 1-844-403-4597 line. The current company site also confirms Green Imaging's identity and official logo.\u003C\u002Fp>\n\u003Cp>The second source is the HHS\u002FOCR entry dated December 9, 2025, which reports 29,517 people. ClaimDepot's incident page, linking to the Texas Attorney General record, supports the 5,016-Texas-resident subset and the same October 7–17 access window. This entry neither replaces the nationwide total with the state figure nor adds the two figures together.\u003C\u002Fp>\n\u003Ch2>What Happened Between October 7 and 17, 2025?\u003C\u002Fh2>\n\u003Cp>Green Imaging detected suspicious activity in its email environment October 17 and began an investigation with third-party cybersecurity specialists. The inquiry determined that one user account had been subject to unauthorized access from October 7 through October 17. Information may have been accessed and\u002For copied; the notice does not present confirmed exfiltration as an established fact.\u003C\u002Fp>\n\u003Cp>The company then arranged a comprehensive third-party review of the account contents to identify the information types and people involved. It followed with an internal review to validate the data and locate addresses for certain current and former patients. Written letters were sent to people for whom contact information was available. The public text does not identify the unauthorized party or the initial access method.\u003C\u002Fp>\n\u003Ch2>What Personal and Medical Information May Have Been Involved?\u003C\u002Fh2>\n\u003Cp>The fields in the affected files varied by individual and may have included name, address, date of birth, Social Security number, driver's license number, or another government-issued identification number. Health-related categories include clinical and treatment information, diagnosis or condition, procedure type, physician information, medication, and other health or health-insurance information.\u003C\u002Fp>\n\u003Cp>Not every person should be assumed to have had every field involved. The company also expressly said its electronic medical records database was not affected. That distinction prevents the potentially involved files in one email account from being confused with the central EMR system. This record does not add patient-portal passwords, payment cards, or bank accounts that are absent from the public document.\u003C\u002Fp>\n\u003Ch2>What Do the 29,517 and 5,016 Figures Mean?\u003C\u002Fh2>\n\u003Cp>29,517 is the number of affected individuals published for this event in the HHS\u002FOCR portal and is used as the current official nationwide total. 5,016 is the disclosed number of Texas residents. Because the Texas figure is included within the overall total, it is not added again to pwnCount or totalRecords, and the event is not split into two separate breach entries.\u003C\u002Fp>\n\u003Cp>Neither figure is a count of emails viewed, files copied, or confirmed instances of misuse. In LeakData, pwnCount and totalRecords show the official total of 29,517 people, while importedRecordCount of 0 means no raw person-level records or searchable account data were obtained. Green Imaging said it had no evidence at the time of notice that the information had been used for identity theft or fraud.\u003C\u002Fp>\n\u003Ch2>How Should the Risks Be Assessed?\u003C\u002Fh2>\n\u003Cp>A combination of name, date of birth, SSN, and government identification can raise the risk of impersonation, new-account fraud, or tax fraud. Diagnosis, procedure, physician, medication, and insurance details may support fake healthcare communications, fraudulent claims, or tailored phishing. Recipients should monitor credit reports as well as Explanation of Benefits statements and unexpected medical bills.\u003C\u002Fp>\n\u003Cp>A message that appears to come from Green Imaging or a known physician is not automatically trustworthy even if it cites a real health detail. Use the organization's known website or phone number instead of the contact channel in an unexpected message, and do not disclose a full SSN, identification number, password, or one-time code. Report unfamiliar care to the provider or insurer and financial activity to the relevant institution.\u003C\u002Fp>\n\u003Ch2>How Did Green Imaging Respond and What Can Recipients Do?\u003C\u002Fh2>\n\u003Cp>Green Imaging said it promptly began an investigation, took remediation actions, and was reviewing its policies, procedures, and processes to reduce the chance of a similar event. It also reported the matter to appropriate government agencies, including HHS. The public notice does not promise complimentary credit monitoring, so this record does not imply that such a service was offered.\u003C\u002Fp>\n\u003Cp>People who believe they may be affected may call the toll-free 1-844-403-4597 line with questions. Unusual entries on credit reports, account statements, or health-insurance explanations should be verified promptly; a fraud alert or free credit freeze may be appropriate when warranted. The fields in a recipient's own notification letter provide the best guide to that person's actual scope.\u003C\u002Fp>","Green Imaging public notice, HHS\u002FOCR report, and Texas Attorney General-linked incident reporting",false,"completed","\u002Fuploads\u002Flogo\u002Fgreenimaging_net.png","Medium"]