CalViva Health
ent_7070bd36936672896873de9d
Disclosures
2
State AG · HHS OCR · 1 jurisdiction
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
15,287
nationwide · HHS OCR CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- CalViva Health
- Normalized
- calviva health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- calvivahealth.org
Disclosure history (2)newest first
- California State AGas victim2021-03-25
CalViva Health notified members that a third-party vendor, Accellion, was compromised between January 7 and January 25, 2021. The breach exposed personal information including names, addresses, dates of birth, insurance IDs, and health information (medical conditions and treatment). CalViva activated its incident response plan, ceased using Accellion's services, and offered one year of identity protection services.
- CALIFORNIAHHS OCRas victim2021-03-25
CalViva Health reported to HHS on 2021-03-25 a Hacking/IT Incident affecting 15287 individuals. Breached information located on Network Server. A third-party vendor of its business associate experienced a cyberattack affecting ePHI including names, addresses, DOB, health insurance, and treatment info.
Supply-chain cascadesreviewed and confirmed
- CalViva Health’s filing is one of at least 12 in the Accellion supply-chain incident (2021).