HackingStolen CredentialsData ExfiltratedSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
Community Family Care Medical Group IPA Inc.
bd_fa2ed35b171bb93a · schema v1 · pii pii-v1
Full breach record for Community Family Care Medical Group IPA Inc. →Community Family Care Medical Group IPA, Inc. disclosed a data breach involving unauthorized disclosure of member information by a contracted provider (Heritage Provider Network affiliates). The incident, occurring around July 2016 and discovered in 2017, involved the unauthorized transfer of names, demographics, DOB, and insurance IDs. No SSNs or medical records were compromised. CFC notified the OCR, conducted forensic investigations, and enhanced security protocols.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-102607
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 12, 2017
- Raw hash
- d34667164dd83ee340fd8be47fb643c740c768e76154e09316cebeb7c29673d6
Reporting entity
- Name
- Community Family Care Medical Group IPA Inc.norm: community family care medical group ipa
Victim entity
- Name
- Community Family Care Medical Group IPA Inc.norm: community family care medical group ipa
Incident
- Discovered
- Oct 13, 2017
- Materiality determined
- Oct 13, 2017
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- PartnerFinancial
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.