Luminis Health Faces Lawsuit Over Data Breach Exposing Patient Information
Article Content
- •Luminis Health is sued for negligence after a data breach exposing patient information.
- •The breach occurred due to unencrypted data stored in an Internet-accessible environment.
- •The lawsuit seeks class action status for potentially tens of thousands of affected patients.
Luminis Health, the parent company of Anne Arundel Medical Center, is being sued for negligence following a data breach that exposed patient medical information on September 4, 2026. The lawsuit, filed by Jokisha White and joined by two other plaintiffs, claims that Luminis stored sensitive data in an unencrypted, Internet-accessible environment, putting potentially tens of thousands of patients at risk of fraud and privacy intrusion. The plaintiffs are seeking to convert the lawsuit into a class action and are requesting at least 10 years of credit monitoring and monetary damages. Luminis Health has acknowledged the breach and is currently investigating the incident, while also working to restore affected systems. The health system serves over 1.8 million patients across Maryland. As of September 17, 2026, Luminis has restored phone services but its online patient portal remains offline.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Anne Arundel Medical Center in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…