Valley Mountain Regional Center

Valley Mountain Regional Center

The California Office of the Attorney General reported a data breach involving Valley Mountain Regional Center (VMRC) on November 9, 2021. The breach occurred on September 15, 2021, due to a phishing email that compromised fourteen email accounts, potentially exposing names, addresses, dates of birth, client identifier numbers, telephone numbers, personal email addresses, and medical information.

Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-547380

TPRM report: https://www.rankiteo.com/company/valley-mountain-regional-center

"id": "val257072625",
"linkid": "valley-mountain-regional-center",
"type": "Breach",
"date": "9/2021",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Healthcare',
                        'location': 'California',
                        'name': 'Valley Mountain Regional Center',
                        'type': 'Organization'}],
 'attack_vector': 'Phishing',
 'data_breach': {'personally_identifiable_information': True,
                 'sensitivity_of_data': 'High',
                 'type_of_data_compromised': ['names',
                                              'addresses',
                                              'dates of birth',
                                              'client identifier numbers',
                                              'telephone numbers',
                                              'personal email addresses',
                                              'medical information']},
 'date_detected': '2021-09-15',
 'date_publicly_disclosed': '2021-11-09',
 'description': 'The California Office of the Attorney General reported a data '
                'breach involving Valley Mountain Regional Center (VMRC) on '
                'November 9, 2021. The breach occurred on September 15, 2021, '
                'due to a phishing email that compromised fourteen email '
                'accounts, potentially exposing names, addresses, dates of '
                'birth, client identifier numbers, telephone numbers, personal '
                'email addresses, and medical information.',
 'impact': {'data_compromised': ['names',
                                 'addresses',
                                 'dates of birth',
                                 'client identifier numbers',
                                 'telephone numbers',
                                 'personal email addresses',
                                 'medical information']},
 'initial_access_broker': {'entry_point': 'Phishing Email'},
 'post_incident_analysis': {'root_causes': 'Phishing Email'},
 'references': [{'date_accessed': '2021-11-09',
                 'source': 'California Office of the Attorney General'}],
 'title': 'Data Breach at Valley Mountain Regional Center',
 'type': 'Data Breach',
 'vulnerability_exploited': 'Email Compromise'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.