Reva, Inc.
bd_450aed9eafa8eab5 · schema v1 · pii pii-v1
Full breach record for Reva, Inc. →REVA, Inc. (FL) reported to HHS OCR on 2020-01-22 a Hacking/IT Incident affecting 1,000 individuals. Numerous employees were victims of an email phishing scheme that compromised ePHI of 783 individuals. Exposed data included names, birthdates, Social Security numbers, financial information, health insurance information, and treatment information. The CE notified HHS and affected individuals, posted substitute notice, and implemented additional safeguards. OCR provided technical assistance on the HIPAA Security and Breach Notification Rule. Breached information located in Email.
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Jan 22, 2020
- Raw hash
- 0ad729a7128c5a930de7d6e220ad27107131ed17518196e2dc54748b7295af92
Source filing
Reporting entity
- Name
- Reva, Inc.norm: reva
- Industry
- Health Care Services
Victim entity
- Name
- Reva, Inc.norm: reva
- Industry
- Health Care Services
- Industry
- Healthcaresource default
Incident
- Discovered
- Not extracted — the OCR public portal omits it
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 1,000
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1566 PhishingT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- OCR provided technical assistance to the CE on the HIPAA Security and Breach Notification Rule.
- Initial access
- phishing_link
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: not extracted→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.