DisclosureLens
RHODE ISLANDHackingHealthcareHealthcareCustomer Data InvolvedPHIHealth (basic)Identity (basic)LowContained

CVS Specialty

bd_63d150b71ee91854 · schema v1 · pii pii-v1

Severity

Low

Discovered

Filed

Feb 10, 2023

To disclose

Affected

740

Confidence

94%
Full breach record for CVS Specialty

CVS Specialty, a Healthcare Provider in RI, reported to HHS on 2023-02-10 a Hacking/IT Incident affecting 740 individuals. PHI involved included names and medications. Breached information was located on Electronic Medical Record and Network Server. In response, the CE implemented additional technical and security safeguards and retrained workforce members.

HIPAA clock HHS notified
no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
⚠ No discovery dateThe OCR public portal omits the discovery date, so the 60-day notification clock cannot be evaluated from this source — only that the filing was submitted.

Incident timeline — partial

? — ?

Breach window unknown

Feb 10, 2023

Filed

No filing yet · watching

Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed740 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.