CoreRecon Threat Intelligence  •  Texas Veterinary Hospitals  •  July 2026 V45

TX Veterinary Hospitals:
Patient Data, Controlled Substances, PMS Compromise

National Veterinary Associates lost 1.1M+ pet owner records in February 2024 to a LockBit affiliate that compromised NVA's cloud AVImark/Cornerstone environment — exfiltrated before encryption across hundreds of TX-affiliated hospitals. Southern Veterinary Partners confirmed breach (70+ hospitals, 2024). AVImark IDEXX and Hippo Manager credential compromise campaigns continue. When veterinary hospitals bill pet insurance (HIPAA Security Rule §164.308/§164.312), dispense Schedule II–V drugs (DEA Title 21 CFR §1304–§1305 recordkeeping), or submit specimens to TVMDL (premise-ID traceability rules), federal and state regulatory duty attaches to your security posture.

Download the Full Threat Brief — Free
July 2026 CoreRecon Intelligence Report V45 HIPAA Security Rule + DEA Title 21 CFR §1304–§1305 + TVMDL + TX HB 300 + TDPSA 62+ Verified Sources
1.1M+
NVA pet owner
records exposed
Feb 2024 ransomware
18–24mo
Pet-owner PII
exploitation window
before fraud clusters
3+
Active ransomware
groups (BlackCat /
LockBit / Rhysida)
$89
Sentinel per
endpoint / month
TX-resident SOC
30min
CoreRecon IR SLA
TX-resident SOC
SDVOSB certified
What This Brief Covers

TX Veterinary Hospitals
Cyber Threat Brief

Full intelligence report on the attack surface facing Texas veterinary hospitals and emergency practices — from the NVA LockBit affiliate breach (1.1M+ pet owner records, Feb 2024) and the Southern Veterinary Partners 70+ hospital DSO incident (2024), to the AVImark IDEXX & Hippo Manager credential compromise campaigns, VCA/BluePearl/Banfield TX exposure, and the regulatory stack that binds dispensing DVMs: HIPAA Security Rule where in-scope, DEA Title 21 CFR §1304–§1305 recordkeeping, TVMDL premise-ID traceability rules, TX HB 300, and TDPSA §541.062 sensitive-data enumeration. Coverage built for practice owners, DSO IT leads, hospital administrators, and compliance officers in TX vet hospitals and emergency practices with 10–250 endpoints.

62+ Verified Sources Including:

  • NVA (Feb 2024) — 1,100,000+ pet owner records, LockBit 3.0 affiliate cloud AVImark/Cornerstone compromise, HHS OCR + multi-state notification
  • Southern Veterinary Partners (May 2024) — 70+ hospital DSO parent-company breach, AVImark IDEXX credential exposure, TX AG breach notification
  • VCA / BluePearl (Mars Petcare) / Banfield TX — PIMS credential exposure investigations, integrator-cloud supply chain
  • AVImark IDEXX credential compromise campaign (2024–2025) — stale third-party vendor credentials, pet-owner PII + payment card exfiltration
  • HIPAA Security Rule (45 CFR §164.308/§164.312) — applies where practice bills Medicaid or handles service-animal records
  • DEA Title 21 CFR §1304.04 inventories + §1305.06 electronic records + CSOS 2FA — Schedule II–V dispense event recordkeeping authorship
  • TVMDL premise-ID submission rules — CWD / EIA / brucellosis / rabies premise-ID traceability must continue from immutable backup
  • TX HB 300 (Texas HSC Ch. 181) + AVMA Principles of Veterinary Medical Ethics confidentiality baseline
  • Top 5 attack vectors: BEC targeting dispensing DVMs, AVImark/Hippo Manager PMS credential theft, DEA controlled-substance diversion, IoT medical-device exposure, pet-owner HR-data third-party portal risk
  • 30/60/90-day hardening checklist with HIPAA Security Rule + DEA §1304–§1305 + TVMDL + TX HB 300 + TDPSA control mapping
  • CoreRecon Sentinel / Fortress / Command tier fit for 10–250 endpoint vet practices, DSO multi-location rollups, and 24-hour emergency hospitals

Access the Full Brief

We email it as a PDF attachment. No newsletter. No spam. One delivery.

Submission failed — please try again or email john@corerecon.com

Brief Sent.

Check your inbox — the PDF is on its way. If it lands in spam, drag it to your inbox so you find it later.

Want it immediately? Download below — we already emailed a copy.

Download PDF Now → Book Free Assessment →

Questions before then? Call (800) 955-2596 — live TX SOC, not a call center.

SDVOSB Certified • TX-Based SOC • No offshore data routing
Questions? (800) 955-2596
✅ 62+ verified sources
✅ HIPAA Security Rule + DEA §1304–§1305 + TVMDL + TX HB 300 + TDPSA covered
✅ 8-section 30/60/90 checklist
✅ TX-specific incidents: NVA, Southern Veterinary Partners, AVImark credential compromise
✅ One email delivery, one PDF