DisclosureLens
HackingHealthcareHealthcareStolen CredentialsSupply Chain (3P Vendor)Business Associate (HIPAA)Customer Data InvolvedDelayed DiscoveryPHIIdentity (basic)Government IDHealth (basic)MediumContained

LIFELONG MEDICAL CARE

bd_0aa3c63d661bbd3c · schema v1 · pii pii-v1

Severity

Medium

Discovered

Oct 2, 2025

Filed

Jan 14, 2026

To disclose

15 weeks

Affected

Not disclosed

Confidence

65%
Full breach record for LIFELONG MEDICAL CARE4 incidents on file

LifeLong Medical Care notified patients of a breach involving protected health information (PHI) accessed by an unauthorized actor via a TriZetto Provider Solutions web portal. The unauthorized access began in November 2024 and was discovered on October 2, 2025. Affected data included names, addresses, dates of birth, Social Security numbers, and health insurance information. LifeLong is working with its technical partner OCHIN and offering identity theft protection services.

Incident timeline

undetected · 335 days
discovery → filing · 15 weeks / 104 days

Nov 1, 2024

Begins

Oct 2, 2025

Discovered

Jan 14, 2026

Filed

vs. sector median

+2 wks slower

Part of TriZetto Provider Solutions supply-chain incident (2025) — a supply-chain cascade affecting multiple organizations.View cascade →
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.