Viverant PT
Disclosed Oct 29, 20214 years ago6,540 affectedConfirmed
The covered entity (CE), Viverant PT, reported that an employee was the victim of an email phishing attack that compromised the protected health information (PHI) of 6,540 individuals. The PHI involved included names, addresses, dates of birth, drivers’ license and Social Security numbers, claims and financial information, diagnoses, and medications prescribed. The CE notified HHS, affected individuals, the media, and posted substitute notice on its website. In response to the breach, the CE implemented additional administrative, technical, security, and physical safeguards. Staff were retrained on email security. OCR provided technical assistance regarding the HIPAA Security Rule.
What is known
| People affected | 6,540 (as reported to HHS) |
|---|---|
| Disclosed | Oct 29, 2021 |
| Attack | Hacking |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Viverant PT (Healthcare Provider, MN)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Oct 29, 2021 | 6,540 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.