Valley Mountain Regional Center
ent_fdd789cd7345b149330c055c
Disclosures
11
State AG · HHS OCR · Leak Site · 7 jurisdictions
Multi-filing incidents
3
incidents joining 2+ filings here
Max affected reported
126,679
nationwide · HHS OCR CA
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Valley Mountain Regional Center
- Normalized
- valley mountain regional center— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- vmrc.net
Disclosure history (11)newest first
- 🐻California State AGas victim2025-07-25
Valley Mountain Regional Center disclosed that a list of vendors published on its website inadvertently included individual consumers vendored under service code (065) SSP Restoration. The exposed information was limited to name, address, phone number, and service description. No Social Security numbers, driver's license numbers, or financial account numbers were involved. The organization is reviewing and revising procedures to prevent recurrence.
- CALIFORNIAHHS OCRas victim2025-07-25
Valley Mountain Regional Center reported to HHS on 2025-07-25 a Unauthorized Access/Disclosure affecting 529 individuals. Breached information located on Network Server. An employee posted PHI (names, addresses, phone numbers) on its website. The BA notified HHS, affected individuals, and the media, and implemented additional safeguards.
- 🏎️Indiana State AGas victim2024-04-19
Valley Mountain Regional Center reported a data breach to the Indiana Attorney General. The breach occurred on 2023-08-01 and was reported on 2024-04-19. 31 Indiana residents were affected. 54,286 individuals affected in total.
- 🦫Oregon State AGas victim2024-04-19
Valley Mountain Regional Center reported a data breach to the Oregon Attorney General. The breach was reported on 2024-04-19. The breach occurred during 8/1/2023. The breach was discovered on 2/20/2024. 54,286 individuals were affected. Notice was sent on 4/19/2024.
- ⛰️New Hampshire State AGas victim2024-04-19
Valley Mountain Regional Center (VMRC), a non-profit providing services to individuals with developmental disabilities, disclosed a data security incident affecting 7 New Hampshire residents. Unauthorized access to personal and health information occurred on or about July 29, 2023, and was discovered on August 1, 2023. VMRC engaged forensic experts, reported the incident to the FBI, and notified residents on April 19, 2024, offering credit monitoring and identity theft recovery services via Cyberscout.
- 🦬Montana State AGas victim2024-04-19
Valley Mountain Regional Center reported a data breach to the Montana Attorney General. The breach was reported on 2024-04-19. The breach occurred on 7/29/2023. 42 Montana residents were affected.
- 🍁Vermont State AGas victim2024-04-19
Valley Mountain Regional Center (VMRC) notified consumers of a data breach where unauthorized access to its network resulted in the acquisition of names and Social Security numbers on or about July 29, 2023. VMRC engaged forensic experts, reported to the FBI, and provided 12 months of credit monitoring services to affected individuals.
- 🐻California State AGas victim2024-04-19
Valley Mountain Regional Center notified individuals of a data breach where personal information, including names and Social Security numbers, and personal health information were acquired without authorization on or about July 29, 2023. The organization became aware of unusual activity on August 1, 2023. The incident was reported to the FBI, and 12 months of credit monitoring and fraud assistance are being provided to affected individuals.
- CALIFORNIAHHS OCRas victim2023-09-29
Valley Mountain Regional Center reported to HHS on 2023-09-29 a Hacking/IT Incident affecting 126,679 individuals. Breached information located on Network Server. The incident involved names, addresses, birthdates, Social Security numbers, driver's license numbers, and diagnoses. The covered entity updated administrative and technical safeguards in response.
- GLOBALLeak Siteas victim2023-08-31
Valley Mountain Regional Center is a private company that serves children and adults with developmental disabilities. Data: 147GB (medical record, passports, SSNs, accounting, financial documents).Soon.
- 🐻California State AGas victim2021-11-09
Valley Mountain Regional Center detected a malicious phishing email on September 15, 2021, which compromised 14 email accounts. The incident potentially exposed protected health information (PHI) including names, addresses, dates of birth, UCI numbers, and medical diagnoses for clients served by the regional center. The organization removed the phishing email, investigated the compromised accounts, and notified affected individuals.