AccidentalMisdeliveryData ExfiltratedCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
California Physicians' Services
bd_018c6f8f06c395f6 · schema v1 · pii pii-v1
Full breach record for California Physicians' Services →Blue Shield of California experienced a data incident in October 2020 where provider directories incorrectly displayed members' Social Security Numbers or Tax Identification Numbers as provider IDs. The error occurred on Blue Shield's and vendor Arvato's websites between October 16-20, 2020. Blue Shield removed the directories, retrieved/destroyed copies, and offered 12 months of Experian IdentityWorks. No misuse is known.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-195911
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 6, 2020
- Raw hash
- d913275fe79e270c45f10d6415548e415d898cf7c994f2c37d09dfac44983385
Reporting entity
- Name
- California Physicians' Servicesnorm: california physicians
- Domain
- blueshieldca.com
Victim entity
- Name
- California Physicians' Servicesnorm: california physicians
- Domain
- blueshieldca.com
Incident
- Discovered
- Oct 20, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1566.002 Spearphishing Link
Compliance
- Time to disclose
- 17 days(17 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.