COVETRUS, INC.
bd_7931d93d4568f830 · schema v1 · pii pii-v1
Full breach record for COVETRUS, INC. →Covetrus, Inc. reported a security event where two employee email accounts were accessed by an unauthorized actor between November 11 and November 28, 2022. The actor likely used phishing to obtain credentials and redirected payments. Personal and financial information from the affected accounts was potentially downloaded. Covetrus engaged forensic experts, notified law enforcement, and is offering two years of complimentary identity monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 11, 2022
Begins
Nov 28, 2022
Discovered
May 8, 2023
Filed
vs. sector median
+4 wks slower
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Maine State AGbd_69e0a341a0dd565a2023-05-08Candidate
- Montana State AGbd_f19b90c3553688802023-05-08Verified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.