An intruder reached the network of an Orlando women’s radiology practice for three days in late April, and the files it accessed or downloaded held the health information of 66,422 patients.
Women’s Center for Radiology, which operates two imaging centers in Orlando, identified the activity on April 29, 2026, and said third-party specialists confirmed unauthorized access between April 26 and April 28. Exposed files contained names, addresses, dates of birth, diagnosis and condition details, lab results, treating physician names, medical record numbers, and health insurance information.
No misuse has been identified so far, and affected patients are being offered credit monitoring and identity theft protection.
Other HIPAA-regulated entities disclosed incidents this week as well. The Association for Neurologically Impaired Brain Injured, a New York nonprofit serving people with developmental and neurological disabilities, reported a March breach affecting 1,918 individuals whose Social Security numbers, diagnoses, and prescriptions were exposed. The Cardiovascular Institute of New England in Rhode Island also reported an incident, as did Kubota Tractor Corporation, which said hackers who reached its network in March and April accessed protected health information of beneficiaries of its employee welfare benefit plan.
The disclosures show how widely breach notifications now span, from imaging providers to benefit plan administrators, and how routinely Social Security numbers appear in compromised files.
