MalwareRansomwareData EncryptedCustomer Data InvolvedPIIIDENTITY_BASICHEALTH_BASICFINANCIAL_ACCOUNTLowContained
Reprosource
bd_28c673547fd8171a · schema v1 · pii pii-v1
Full breach record for Reprosource →ReproSource Fertility Diagnostics, Inc. notified South Carolina residents of a ransomware incident occurring on August 8, 2021. The company discovered ransomware on August 10, 2021, severed network connections, and contained the threat. While data acquisition was not confirmed, patient and customer PII (names, DOB, health info, billing data) may have been accessed. The company engaged forensic experts, notified law enforcement, and offered one year of complimentary identity monitoring via Kroll.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_1a0eb1fd9490ea83Montana State AGfiled 2021-10-08Verified
- bd_60815a0ad2f2fb25California State AGfiled 2021-10-08Verified
- bd_b67f67fff80c97a8Washington State AGfiled 2021-10-08Verified
- bd_ceb1810a1a430219Delaware State AGfiled 2021-10-08Verified
Show 2 more filings ↓Show fewer ↑
- bd_f8be3bea8117c449Oregon State AGfiled 2021-10-08Verified
- bd_fd7dc0062bcdb4afHHS OCRfiled 2021-10-08Verified
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Business%20Resources%20Laws/Related%20Laws/Breaches/2021/ReproSourceFertilityDiagnostics.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 8, 2021
- Raw hash
- 3e695f6f80caf17bc2ed8bc632709453198e51ac5b1df3dc004e4860a56f9c4b
Reporting entity
- Name
- Reprosourcenorm: reprosource
- Domain
- reprosource.com
Victim entity
- Name
- Reprosourcenorm: reprosource
- Domain
- reprosource.com
Incident
- Discovered
- Aug 10, 2021
- Materiality determined
- —
- Notification sent
- Sep 24, 2021
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICHEALTH_BASICFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- promptly notified law enforcement
Compliance
- Time to disclose
- 8 weeks(59 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.