Vitality
bd_b0b24b2f0d4db580 · schema v1 · pii pii-v1
Full breach record for Vitality →The Vitality Group, LLC reported a security incident involving the MOVEit file transfer vulnerability. The zero-day vulnerability was identified on May 30, 2023, and detected by Vitality on June 1, 2023. An unauthorized third party accessed the server for a two-hour span. 9 New Hampshire residents were affected, with personal information including names and Social Security numbers potentially exposed. Vitality disconnected the server, applied patches, reset passwords, and offered credit monitoring via Experian.
J jump to incidentP pin to compareR raw source
Incident timeline
May 30, 2023
Begins
Jun 1, 2023
Discovered
Jul 14, 2023
Filed
vs. sector median
8 wks faster
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.