CALIFORNIAHackingHealthcareHealthcareMisconfigurationCustomer Data InvolvedHEALTH_BASICIDENTITY_BASICMedium
CardioFit Medical Group, Inc.
bd_d7c8cc88c2cb68aa · schema v1 · pii pii-v1
Full breach record for CardioFit Medical Group, Inc. →CardioFit Medical Group, Inc. (CA) reported to HHS OCR on 2026-04-09 an Unauthorized Access/Disclosure incident affecting 7,243 individuals. Breached information was located in Email. No business associate was identified as present. No further detail is available from the web description.
HIPAA clock✓ HHS notified
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_d322ce828fe1498eCalifornia State AGfiled 2026-04-09Verified
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Apr 9, 2026
- Raw hash
- 03dcf460185df97b9bd7765e49f6c7edfb7da9d6455e681f86e4f7294d212a1c
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- CardioFit Medical Group, Inc.norm: cardiofit medical
- Industry
- Health Care Services
Victim entity
- Name
- CardioFit Medical Group, Inc.norm: cardiofit medical
- Industry
- Health Care Services
- Industry
- Healthcaresource default
Incident
- Discovered
- Feb 17, 2026
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 7,243
- Data types
- HEALTH_BASICIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- Regulator citations
- HHS OCR breach report filed 2026-04-09
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: Feb 17, 2026→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.