CAPSULE GROUP, LLC
ent_019ebb67cbb692e68f132f7c4a0a44bb
Disclosures
3
State AG · HHS OCR · 2 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
27,625
nationwide · HHS OCR NY
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- CAPSULE GROUP, LLC
- Normalized
- capsule group— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300Z1KAGP28D3TE13
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- 🐻California State AGas victim2022-07-30
On April 5, 2022, Capsule discovered that unauthorized threat actors gained access to certain customer accounts. The incident involved demographic information (name, email, phone, address, DOB, sex), health information (medical conditions, prescribed medications), past order history, limited payment information (last 4 digits of card, expiration date), insurance information, and chat messages. Capsule engaged a third-party forensic firm, reset passwords, implemented additional security safeguards, and offered 12 months of complimentary Experian IdentityWorks identity protection services.
- 🐻California State AGas victim2022-05-27
On April 5, 2022, Capsule discovered that unauthorized threat actors gained access to certain customer accounts. The incident involved demographic information (name, email, phone, address, DOB, sex), health information (medical conditions, prescribed medications), past order history, limited payment information (last 4 digits of card, expiration date), insurance information (group ID, cardholder ID), and chat messages. Capsule engaged a third-party forensic firm, reset passwords, implemented additional security safeguards, and offered 12 months of complimentary Experian IdentityWorks identity protection services.
- NEW YORKHHS OCRas victim2022-05-27
Capsule, Inc. reported to HHS on 2022-05-27 a Hacking/IT Incident affecting 27,625 individuals. Breached information located on Network Server. The incident involved PHI including names, addresses, DOB, diagnoses, and medications. The entity provided credit monitoring and implemented technical safeguards.