MisuseCustomer Data InvolvedLow
CVS HEALTH CORPORATION
bd_5dcb48c30a72e620 · schema v1 · pii pii-v1
Full breach record for CVS HEALTH CORPORATION →CVS reported an internal system breach that occurred on January 1, 2023, and was discovered on January 5, 2023. The breach affected 10 Maine residents. Affected individuals were notified electronically on January 10, 2023, and offered identity theft protection services.
Maine clockDiscovered Jan 5, 2023 → Filed with AG Apr 8, 2024459d ✗ ME AG >90d15 months discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed10 affectedView incident
Source provenance
- Source URL
- https://www.maine.gov/agviewer/content/ag/985235c7-cb95-4be2-8792-a1252b4f8318/9bef9056-32aa-4e74-b9fd-cbe9ca9e0836.shtml
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 8, 2024
- Raw hash
- 71fd5b34643ca7dc008103f618aebd76fc580d275808afa8bf89e10ced1d03d2
Reporting entity
- Name
- CVS HEALTH CORPORATIONnorm: cvs health
- Domain
- cvshealth.com
Victim entity
- Name
- CVS HEALTH CORPORATIONnorm: cvs health
- Domain
- cvshealth.com
Incident
- Discovered
- Jan 5, 2023
- Materiality determined
- —
- Notification sent
- Jan 10, 2023
- Affected individuals
- 10
- Data types
- —
- Attack vector
- Insider
- Threat actor
- Internal
Compliance
- Time to disclose
- 15 months(459 days from discovery to filing)
- Compliance flags
- ME AG >90d · 459d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status Maine Discovered: Jan 5, 2023→ Filed with AG: Apr 8, 2024459d 90 days ME AG >90d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.