Threat Intelligence Brief
Curated summary with source attribution
Source: classaction.org
Threat Risk: High
Victim: River City Data and its healthcare/legal clients
Incident: Unauthorized access and exfiltration of data from a document processing service.
Impact: Exposure of Social Security numbers, medical record numbers, and sensitive health information.
Attacker: Unidentified threat actors
Analysis: An unauthorized actor maintained access to River City Data’s environment for several months, exfiltrating data between November 2025 and January 2026. The breach is particularly severe due to the nature of the victim’s business, which processes documents for hospitals and court systems. The delay between initial access and notification suggests a significant detection gap.
Recommendations: Monitor credit reports and implement identity theft protection for affected individuals; Audit third-party data processing agreements to ensure stringent security requirements; Implement enhanced monitoring for unauthorized access to digitization environments
Source: ClassAction.org
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source