The Institute for Functional Medicine
ent_d52df4294316942d
Disclosures
3
State AG · 3 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
289
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- The Institute for Functional Medicine
- Normalized
- the institute for functional medicine— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- ifm.org
Disclosure history (3)newest first
- 🍁Vermont State AGas victim2024-07-23
The Institute for Functional Medicine experienced a data breach between May 22-29, 2024, where an attacker used stolen employee credentials to install malicious software on its website. The malware potentially intercepted purchase information, including credit card details and personal data, from customers who made purchases during that window. IFM removed the malware, reset credentials, and notified law enforcement.
- 🦞Maine State AGas victim2024-07-22
IFM experienced a web skimmer attack (May 22-29, 2024): attacker stole an employee password, installed malicious software on IFM's website, and potentially intercepted purchase data including cardholder name, address, phone, card number, expiration date, and CVV. Malware removed May 29; credentials reset. 289 total affected; 1 Maine resident.
- 🏎️Indiana State AGas victim2024-06-28
The Institute for Functional Medicine reported a data breach to the Indiana Attorney General. The breach occurred on 2024-05-22 and was reported on 2024-06-28. 1 Indiana residents were affected. 289 individuals affected in total.