DisclosureLens
HackingHealthcareCustomer Data InvolvedIdentity (basic)Government IDPHIHealth (basic)MediumContained

Bi-Bett Corporation

bd_1810ca3e6070f679 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Feb 17, 2023

Filed

Jul 25, 2023

To disclose

23 weeks

Affected

Not disclosed

Linked

2 filings

Confidence

65%
Full breach record for Bi-Bett Corporation

Bi-Bett Corporation detected unusual activity in a single email account on February 17, 2023. The account was compromised by an unauthorized actor, potentially exposing personal and protected health information including names, addresses, Social Security Numbers, driver's license numbers, Medicaid numbers, and medical reference numbers. The company secured the account, engaged a third-party cybersecurity firm, changed credentials, and enhanced security measures. Affected individuals are offered 12 months of credit monitoring and fraud assistance.

California clockDiscovered Feb 17, 2023Notified Jul 25, 2023158d CA 60-day late23 weeks discovery → filing

Incident timeline

discovery → filing · 23 weeks / 158 days

Feb 17, 2023

Discovered

Jul 25, 2023

Filed

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings

View merged incident ↗
HHS OCRJul 25 · first
California State AGJul 25 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.