SimonMed Data Breach Exposes Sensitive Information of 1.2 Million Patients
SimonMed Imaging has confirmed a data breach affecting 1,275,669 patients, marking one of the largest healthcare data breaches of the year.
SimonMed Imaging has confirmed a data breach affecting 1,275,669 patients, marking one of the largest healthcare data breaches of the year.
On January 21, 2025, unauthorized access occurred at SimonMed Imaging's Scottsdale, Arizona facility. The breach was detected on January 28 during routine security checks.
An internal investigation confirmed that patient names and other personal identifiers were compromised. The total number of affected individuals is 1,275,669, including 22 residents of Maine. Due to the low number of affected Maine residents, notification to consumer reporting agencies was not required under state law.
SimonMed Imaging engaged Octillo Law PLLC for managing breach disclosures and compliance. On October 10, 2025, written notifications were sent to all affected individuals, detailing the incident and recommending precautions.
SimonMed Imaging has confirmed a data breach affecting 1,275,669 patients, marking one of the largest healthcare data breaches of the year.
Unlike other breaches, SimonMed did not offer identity theft protection services. The company cited confidence in its existing security measures and monitoring procedures. A sample notification letter is available on the Maine Attorney General’s office portal.
This incident highlights the ongoing cybersecurity threats faced by healthcare organizations. Patients are encouraged to monitor credit reports, financial statements, and be cautious of unsolicited requests for personal information.
Healthcare providers are advised to enhance system monitoring, ensure timely security updates, and configure breach detection tools for immediate alerts. Rapid detection and transparent communication are emphasized as crucial for reducing harm and maintaining patient trust.
SimonMed Imaging's breach underscores the importance of robust security frameworks and regular penetration testing within the healthcare industry.
Based on reporting by GBHackers.
