Independent Living Systems
Disclosed Sep 2, 20224 years ago4,226,508 affectedConfirmed
The covered entity (CE), Independent Living Systems, reported that a software application exposed the protected health information (PHI) of 19,303 individuals. The PHI involved included names, dates of birth, addresses, Social Security numbers, diagnoses, claims and health insurance information, and other treatment information. The CE notified HHS, the affected individuals, the media, and provided substitute notice. In response to the breach, the CE provided complimentary credit monitoring services and implemented additional administrative, technical, and security safeguards to better protect its PHI.
What is known
| People affected | 4,226,508 (as reported by the organization) |
|---|---|
| Disclosed | Sep 2, 2022 |
| Discovered | Jul 5, 2022 |
| Happened | Jun 30, 2022 |
| Attack | Ransomware |
| Data exposed | Names, Health |
| Sector | Tech · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| California Attorney General breach notice: Independent Living Systemsoag.ca.gov · Official notice | Official notice |
| Washington Attorney General breach notice: Independent Living Systemsatg.wa.gov · Official notice | Official notice |
| Notice letter filed with the Delaware DOJ: Independent Living Systemsattorneygeneral.delaware.gov · Official notice | Official notice |
| Oregon DOJ breach notice: Independent Living Systemsjustice.oregon.gov · Official notice | Official notice |
| Vermont Attorney General: 2023-03-14 Independent Living Systems Data Breach Notice to Consumersago.vermont.gov · Official notice | Official notice |
| Indiana Attorney General 2023 data breach report: Independent Living Systemsin.gov · Official notice | Official notice |
| HHS OCR breach report (archive, resolved): Independent Living Systems (Healthcare Provider, FL)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Sep 2, 2022 | 4,226,508 |
| California AGresidents of CA | Mar 14, 2023 | |
| Washington AGresidents of WA | Mar 14, 2023 | 6,017 |
| Delaware DOJresidents of DE | Mar 14, 2023 | 791 |
| Oregon DOJresidents of OR | Mar 14, 2023 | 4,226,508 |
| Vermont AGresidents of VT | Mar 14, 2023 | |
| Indiana AGresidents of IN | Mar 14, 2023 | 3,276 |
| HHS archivetotal | Dec 8, 2023 | 19,303 |
History of this record
- 2026-09-25 · disclosed: 2023-03-14 to 2022-09-02 · backfill source
- 2026-09-25 · data_types: ["names"] to ["names","health"] · backfill source
- 2026-09-25 · summary: empty to The covered entity (CE), Independent Living Systems, reported that a software application exposed the protected health information (PHI) of 19,303 individuals. The PHI involved included names, dates of birth, addresses, Social Security numb · backfill source
- 2026-09-25 · records_basis: empty to organization · backfill source
- 2026-09-25 · records: empty to 4226508 · backfill source
- 2026-09-25 · source: empty to https://ago.vermont.gov/document/2023-03-14-independent-living-systems-data-breach-notice-consumers · backfill source
- 2026-09-25 · data_types: [] to ["names"] · backfill source
- 2026-09-25 · attack: unknown to ransomware · backfill source
- 2026-09-25 · discovered: empty to 2022-07-05 · backfill source
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (California AG), confirmed by California AG. Record counts are as reported. Not legal advice.