DisclosureLens
HackingHealthcareProfessional ServicesHealthcareStolen CredentialsTargetedIdentity (basic)Government IDFinancialMediumResolved

Envision Healthcare Corporation

bd_0ce513406d0b7dda · schema v1 · pii pii-v1

Severity

Medium

Discovered

Jul 1, 2018

Filed

Oct 10, 2018

To disclose

14 weeks

Affected

16state residents only

Confidence

64%

Envision Healthcare Corporation notified providers and applicants that unauthorized third-party access to email accounts occurred in July 2018. The incident potentially exposed names, dates of birth, SSNs, driver's license numbers, and financial information. Envision hired forensic investigators and offered one year of credit monitoring.

Incident timeline

discovery → filing · 14 weeks / 101 days

Jul 1, 2018

Begins

Jul 1, 2018

Discovered

Oct 10, 2018

Filed

vs. sector median

+2 wks slower

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed16 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.