MalwareRansomwareData EncryptedCustomer Data InvolvedPHIHEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Livingston Memorial VNA Health Corporation and its affiliates Livingston Memorial Visiting Nurse Association and Livingston CareGivers
bd_3e8785213d70aeb2 · schema v1 · pii pii-v1
Full breach record for Livingston Memorial VNA Health Corporation and its affiliates Livingston Memorial Visiting Nurse Association and Livingston CareGivers →Livingston Memorial VNA Health Corporation and affiliates discovered unauthorized access and encryption of data on February 19, 2022. The incident involved potential exposure of PHI and PII for patients in Ventura, California. The organization terminated access, engaged forensic investigators, and enhanced cybersecurity controls. Credit monitoring was offered to affected individuals.
California clockDiscovered Feb 19, 2022 → Notified Jan 20, 2023335d ✗ CA 60-day late48 weeks discovery → filing
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-562193
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 24, 2023
- Raw hash
- 73594ddb980e7d9c3ec2609f6126f2fa61ebd6ca3e97907d30267c8e923e02e0
Reporting entity
- Name
- Livingston Memorial VNA Health Corporation and its affiliates Livingston Memorial Visiting Nurse Association and Livingston CareGiversnorm: livingston memorial vna health corporation and its affiliates livingston memorial visiting nurse association and livingston caregivers
Victim entity
- Name
- Livingston Memorial VNA Health Corporation and its affiliates Livingston Memorial Visiting Nurse Association and Livingston CareGiversnorm: livingston memorial vna health corporation and its affiliates livingston memorial visiting nurse association and livingston caregivers
Incident
- Discovered
- Feb 19, 2022
- Materiality determined
- —
- Notification sent
- Jan 20, 2023
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- External
Compliance
- Time to disclose
- 48 weeks(339 days from discovery to filing)
- Compliance flags
- CA 60-day late · 335d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Feb 19, 2022→ Notified: Jan 20, 2023335d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.