ILHackingHealthcareHealthcareBusiness Associate (HIPAA)Customer Data InvolvedHEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENTHighResolved
Vitality Nutrition
bd_bbec978895f7fbc7 · schema v1 · pii pii-v1
Full breach record for Vitality Nutrition →The Vitality Group, LLC (a Business Associate, IL) reported to HHS OCR on 2023-07-11 a Hacking/IT Incident affecting 20,387 individuals. A software application exposed PHI stored on a Network Server, including names, dates of birth, addresses, and Social Security numbers. The BA notified HHS and affected individuals, offered complimentary credit monitoring, and implemented additional administrative, technical, and security safeguards.
HIPAA clock✓ HHS notified
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_7380e4c0987b3826Montana State AGfiled 2023-07-06(5d gap)Verified
- bd_26be677794ddc28bMaine State AGfiled 2023-07-17(6d gap)Verified
- bd_448dd79b72caf880Montana State AGfiled 2023-07-17(6d gap)Verified
- bd_04271a52b6c1bf45Maine State AGfiled 2023-06-30(11d gap)Verified
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Jul 11, 2023
- Raw hash
- 372877e0c8f59dc6311ab60af5dc4cbc1e539a7c48078b8cf6caa607b5b674f1
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- Vitality Nutritionnorm: vitality nutrition
- Domain
- vitalitynutrition.com
- Industry
- Business Associate
Victim entity
- Name
- Vitality Nutritionnorm: vitality nutrition
- Domain
- vitalitynutrition.com
- Industry
- Business Associate
- Industry
- Healthcaresource default
Incident
- Discovered
- Jun 1, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 20,387
- Data types
- HEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- Regulator citations
- Notified HHS
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: Jun 1, 2023→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.