Verity Medical Foundation
bd_6d0ed1dd7e1e986e · schema v1 · pii pii-v1
Full breach record for Verity Medical Foundation →4 incidents on fileVerity Medical Foundation disclosed that an unauthorized third party accessed a decommissioned website (Verity Medical Foundation-San Jose Medical Group) between October 2015 and January 2017. The organization detected the breach on January 6, 2017. Affected data includes patient names, dates of birth, medical record numbers, addresses, email addresses, phone numbers, and the last four digits of credit card numbers. Social security numbers and full credit card information were not involved. The organization engaged a cybersecurity firm, secured the website, and offered credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 1, 2015
Begins
Jan 6, 2017
Discovered
Feb 7, 2017
Filed
vs. sector median
6 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- HHS OCRbd_bf824ee6c6c101e62017-01-11 · +27dCandidate
Filing propagation · 2 filings
View merged incident ↗Pattern: first filing Jan 11 (CA), last Feb 7 (CA) — a 27-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.