HackingStolen CredentialsSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSLowContained
Revival Animal Health
bd_8e933481ee3d3515 · schema v1 · pii pii-v1
Full breach record for Revival Animal Health →Revival Animal Health notified customers of a data breach involving its third-party e-commerce provider, CommerceV3. Between Nov 2021 and Dec 2022, an unauthorized actor accessed CommerceV3 systems, potentially exposing customer names, billing addresses, and full payment card details (number, CVV, expiration). Revival investigated, confirmed the scope, and offered 12 months of credit/identity monitoring. No specific count of affected individuals was disclosed in this notice.
Leak gap clock✗ Leak >180d8 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
A leak claim by ailock about this victim predates this filing by 3095 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_043e30ade7fef65cNew Hampshire State AGfiled 2023-10-19Verified
- bd_36042a3a6758a8acCalifornia State AGfiled 2023-10-19Verified
- bd_6fe628932452e80fWashington State AGfiled 2023-10-19Candidate
- bd_ccb5cdbadbbe2fb7Oregon State AGfiled 2023-10-19Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-10-19-revival-animal-health-commercev3-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 19, 2023
- Raw hash
- f4cea69b6a20d9b5ece64d88adb644e2df647177840dd6817931f023fb446d64
Reporting entity
- Name
- Revival Animal Healthnorm: revival animal health
Victim entity
- Name
- Revival Animal Healthnorm: revival animal health
Incident
- Discovered
- Aug 23, 2023
- Materiality determined
- —
- Notification sent
- Oct 19, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALS
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain CompromiseT1078 Valid Accounts
- Threat actor
- External
- Third party
- via CommerceV3
- Initial access
- external_remote_services
Compliance
- Time to disclose
- 8 weeks(57 days from discovery to filing)
- Compliance flags
- Leak >180dVT AG >14 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.