On or about December 16, 2025, IMA Diligence Services, LLC became aware of suspicious activity on a legacy server hosted by a third-party. An unauthorized actor accessed this file server and acquired certain files between December 8 and December 16, 2025. The Genesis ransomware group claimed responsibility for the attack.
The breach exposed the personal information of 525,306 individuals across multiple U.S. states. The types of data involved include names, Social Security numbers, financial account information, credit/debit card numbers, driver’s license numbers, medical information, health insurance information, addresses, dates of birth, and government IDs. For some individuals, passport numbers and taxpayer identification numbers were also exposed.
Notices were mailed to affected individuals starting May 29, 2026. IMA Diligence Services, LLC offered 12 months of free credit monitoring and identity restoration services due to the incident.