HackingHealthcareHealthcareVulnerability ExploitN-DaySupply Chain (3P Vendor)Customer Data InvolvedData ExfiltratedPIIPHIIDENTITY_BASICHEALTH_BASICLowContained
Health Net Community Solutions
bd_93cc870284042386 · schema v1 · pii pii-v1
Full breach record for Health Net Community Solutions →Independent Living Systems, LLC (ILS), a healthcare services company, notified affected individuals of a data security incident stemming from the exploitation of a vulnerability in MOVEit Transfer software (Progress Software) on May 31, 2023. Personal and protected health information may have been exposed. ILS disabled MOVEit, launched an investigation with cyber experts and law enforcement, and offered two years of credit monitoring via Cyberscout/Identity Force.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-578093
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 18, 2023
- Raw hash
- 4d7fcf5da2773dc6bbeff9ddd2d5c3ec25cacfbce7857dfe9e5410bf58a6b851
Reporting entity
- Name
- Health Net Community Solutionsnorm: health net community
- Domain
- ilshealth.com
Victim entity
- Name
- Health Net Community Solutionsnorm: health net community
- Domain
- ilshealth.com
- Industry
- Healthcarellm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIPHIIDENTITY_BASICHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1119 Automated Collection
- Threat actor
- External
- Third party
- via Progress Software
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.