LIVANOVA USA, INC.
bd_a3647fcc70a4a30a · schema v1 · pii pii-v1
Full breach record for LIVANOVA USA, INC. →LivaNova USA, Inc. experienced a cybersecurity incident around October 26, 2023, discovered on November 19, 2023. An unauthorized party obtained personal information including names, contact details, Social Security numbers, dates of birth, medical information (treatment, diagnosis, prescriptions, medical record numbers, device serial numbers), and health insurance information. The company engaged external cybersecurity experts, coordinated with law enforcement, and took systems offline. Affected individuals are offered two years of identity protection and credit monitoring.
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_0d82e63a7db61860Maine State AGfiled 2024-06-21(39d gap)Verified
- bd_4cbe12544ebb3ad3California State AGfiled 2024-06-21(39d gap)Verified
- bd_86a5e8beca6d0b07Oregon State AGfiled 2024-06-21(39d gap)Verified by operator
- bd_8903a5d76c236c4eWashington State AGfiled 2024-06-21(39d gap)Verified
Show 3 more filings ↓Show fewer ↑up to 68d gap
- bd_3a8a8a6bbce6d40fVermont State AGfiled 2024-05-31(60d gap)Verified
- bd_e105ceeb7efaf953Indiana State AGfiled 2024-05-31(60d gap)Verified
- bd_d3ef1f04f09b8681Montana State AGfiled 2024-05-23(68d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-589535
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 30, 2024
- Raw hash
- 02bb6d86bc0ba25752ab9f524e8dfaeaf73ba5481525d87b7554be67e1ce480e
Reporting entity
- Name
- LIVANOVA USA, INC.norm: livanova usa
- Domain
- livanova.com
Victim entity
- Name
- LIVANOVA USA, INC.norm: livanova usa
- Domain
- livanova.com
Incident
- Discovered
- Nov 19, 2023
- Materiality determined
- —
- Notification sent
- Jul 30, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTPHIHEALTH_BASICFINANCIAL
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Coordinated with law enforcement
Compliance
- Time to disclose
- 36 weeks(254 days from discovery to filing)
- Compliance flags
- CA 60-day late · 254dLeak >180d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Nov 19, 2023→ Notified: Jul 30, 2024254d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.