Retina Florida MSO, LLC d/b/a Retina Group of Florida Data Breach

NOTICE: If you received a NOTICE OF DATA BREACH letter from Retina Group of Florida, contact the Arnold Law Firm at (916) 777-7777 to discuss your legal options, or submit a confidential Case Evaluation form here.

​​​​​​​​On September 16, 2025, Retina Florida MSO, LLC d/b/a Retina Group of Florida (“RGF”) reported a data security incident to the Attorney General’s Office of Maine. The incident, which occurred between November 6 and November 9, 2024, involved unauthorized access to a portion of RGF’s internal network (the “Data Breach”). Approximately, 153,429 people have been affected. 

Recently, RGF has begun sending data breach notification letters to those affected and is offering complimentary identity protection and credit monitoring services. If you received a Data Breach notification letter from RGF, it confirms that your information was potentially impacted.

Retina Group of Florida is a large multi-site ophthalmology group headquartered in Fort Lauderdale, Florida, providing specialized retinal care throughout the state. The organization is known for treating a wide range of conditions including macular degeneration, diabetic retinopathy, retinal detachments, and other diseases of the retina. The group is managed by Retina Florida MSO, LLC and operates several clinical locations across Florida. As of 2025, Retina Group of Florida employs approximately 85 individuals and generates an estimated $22.9 million in annual revenue.

WHAT INFORMATION IS INVOLVED IN THE RETINA GROUP OF FLORIDA DATA BREACH?

Retina Group Florida Data BreachRGF has not revealed the specific types of data that were compromised, but based on the nature of the incident, the information may include one or more of the following:  

  • Full names,
  • Dates of birth,
  • Social Security numbers,
  • Driver’s license numbers,
  • Financial account of payment card information,
  • Medical or health insurance information. 

This information is called your Personally Identifiable Information (“PII”). It tells others about you and is considered part of your identity. Businesses are required to secure this information or risk facing statutory penalties, among other legal penalties. Stolen PII can be used by identity thieves to engage in fraudulent activity using your identity. 

Personal medical information (a specific type of PII) is referred to as Protected Health Information (“PHI”). It is protected under both state and federal law. Healthcare providers and other businesses who handle PHI are required to protect that information. Like stolen PII, stolen PHI can be used by identity thieves to engage in fraudulent activity using your identity. Quite often, PII and PHI are used in conjunction by hackers.

The best way to protect yourself after a data breach is to sign up for credit and identity protection services as soon as possible. 

California offers extra protections and legal rights to its residents through the California Consumer Privacy Act (“CCPA”).

NOTICE: If you received a NOTICE OF DATA BREACH letter from Retina Group of Florida, contact the Arnold Law Firm at (916) 777-7777 to discuss your legal options, or submit a confidential Case Evaluation form here.