
New Jersey-based Centers Laboratory revealed that a data security incident that occurred last year resulted in the exposure of sensitive personal information belonging to more than 540,000 individuals.
Centers Laboratory, headquartered in Cedar Knolls, New Jersey, is a diagnostic testing provider that serves healthcare facilities, including skilled nursing facilities, primary care physicians, and the general public through walk-in testing services and mobile laboratory units.
In a data security incident notice published on its website, Centers Laboratory said that on August 25, it discovered suspicious activity within its internal network. The diagnostic testing provider immediately launched an investigation, with assistance from external cyber security experts, to determine the nature and scope of the incident.
It also took steps to secure the affected systems and notified relevant law enforcement authorities about the incident.
“This investigation revealed that an unauthorised actor gained limited access to data on Centers’ systems between August 9, 2025 and August 14, 2025, at which time the unauthorised actor copied data,” Centers Laboratory said.
The compromised data included names, dates of birth, driver’s license or state identification numbers, Social Security numbers, passport numbers, health insurance information and medical information. The incident was reported to the U.S. Department of Health and Human Services whereCenters Laboratory said it has identified at least 542,377 individuals impacted by the incident.
Centers Laboratory has advised all affected individuals to regularly monitor their credit reports, account and benefit statements and report any suspicious activity to law enforcement authorities, including the police and the state attorney general.
It has also offered complimentary identity protection and credit monitoring services to all affected individuals.
The WorldLeaks ransomware group claimed responsibility for the cyber attack on the Centers Laboratory, listing it as a victim on its data leak site. The group claimed to have exfiltrated approximately 10 TB of confidential data from the diagnostic testing provider and released sample records as evidence of the breach. According to the leaked samples, the compromised information includes patient names, dates of birth, Social Security numbers, medical laboratory test results, billing and insurance details, corporate bank account information, and other sensitive patient and financial data.
Winston House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF
020 8349 4363
© 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543