PurFoods Holdings, LLC
ent_019e227cb6ecacb5fa1dd8d8d8ea1578
Disclosures
13
State AG · HHS OCR · 12 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
1,289,643
nationwide · HHS OCR IA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- PurFoods Holdings, LLC
- Normalized
- purfoods holdings— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 54930040U7JJAQ9M6T68
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (13)newest first
- Oregon State AGas victim2023-08-31
Purfoods, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2023-08-31. The breach occurred during 1/16/2023 - 2/22/2023. The breach was discovered on 7/10/2023. 1,237,681 individuals were affected. Notice was sent on 8/25/2023.
- IOWAHHS OCRas victim2023-08-25
PurFoods, LLC reported to HHS on 2023-08-25 a Hacking/IT Incident affecting 1,289,643 individuals. Breached information located on Network Server. The incident involved a ransomware attack exposing PHI including demographic, clinical, and financial data.
- Massachusetts State AGas victim2023-08-25
PurFoods, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-08-25. 11,793 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2023-08-25
PurFoods, LLC, an Iowa-based commercial entity, reported an external system breach (hacking) occurring on January 16, 2023, discovered on July 10, 2023. The incident affected 1,237,681 individuals, including 2,248 Maine residents. Compromised data included names and financial account/credit card numbers. The company provided written notification on August 25, 2023, and offered identity theft protection services via Kroll.
- New Hampshire State AGas victim2023-08-25
PurFoods, LLC notified New Hampshire residents on August 25, 2023, of a cyberattack occurring between January 16 and February 22, 2023. The incident involved ransomware encryption and potential data exfiltration. Approximately 1,297 NH residents were affected, with data including names, SSNs, DOBs, and health insurance IDs. PurFoods engaged third-party specialists, notified law enforcement and HHS, and provided credit monitoring via Kroll.
- Montana State AGas victim2023-08-25
PurFoods, LLC notified Montana residents of a cyberattack occurring between Jan 16 and Feb 22, 2023. The incident involved file encryption and potential data exfiltration. Affected data included names, health insurance member IDs, and potentially other PII. The company engaged forensic specialists, notified federal law enforcement, and offered 12 months of credit monitoring via Kroll.
- California State AGas victim2023-08-25
PurFoods, LLC (d/b/a Mom's Meals) experienced a cyberattack between January 16, 2023, and February 22, 2023, involving file encryption and potential data exfiltration. The incident was discovered on February 22, 2023. Affected data may include names and health insurance member identification numbers. The company notified federal law enforcement and offered 12 months of credit monitoring and identity restoration services via Kroll.
- Indiana State AGas victim2023-08-25
PurFoods, LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2023-01-16 and was reported on 2023-08-25. 48,592 Indiana residents were affected. 1,237,681 individuals affected in total.
- Vermont State AGas victim2023-08-25
PurFoods, LLC notified consumers of a cyberattack occurring between Jan 16 and Feb 22, 2023. The incident involved file encryption and potential data exfiltration. Affected data included names and health insurance member IDs. PurFoods engaged third-party specialists, notified federal law enforcement, and offered 12 months of credit monitoring via Kroll.
- South Carolina State AGas victim2023-08-25
PurFoods, LLC notified South Carolina regulators of a cyberattack occurring between Jan 16 and Feb 22, 2023. The incident involved file encryption and potential data exfiltration. Affected data included names and potentially health insurance member IDs. The company engaged third-party specialists, notified federal law enforcement, and offered 12 months of credit monitoring via Kroll.
- Washington State AGas victim2023-08-25
PurFoods, LLC (dba Mom's Meals) reported a ransomware cyberattack occurring between Jan 16 and Feb 22, 2023, discovered on Feb 22, 2023. Encryption of files and potential data exfiltration were identified. Affected data included names, SSNs, driver's licenses, financial account info, and PHI. 9,094 Washington residents were notified on Aug 25, 2023. Response included law enforcement notification, credit monitoring via Kroll, and HIPAA notifications.
- South Carolina State AGas victim2023-07-31
Humana Inc. reported a privacy incident involving its third-party vendor, PurFoods, LLC DBA Mom’s Meals. Between Jan 16 and Feb 22, 2023, an unauthorized actor encrypted files and potentially exfiltrated data from Mom's Meals systems. The incident impacted 17,660 South Carolina residents, exposing PII, PHI, and financial data. Mom's Meals engaged the FBI, migrated to Azure, and provided credit monitoring.
- Illinois State AGas victim2023-01-01
PURFOODS, LLC filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-594). The register records the breach as discovered on February 22, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.