DisclosureLens
Social EngineeringHealthcareFinancial ServicesHealthcarePhishingCustomer Data InvolvedDelayed DiscoveryPHIHealth (basic)Identity (basic)LowContained

Academic HealthPlans, Inc.

bd_0f41ff8620a51b5d · schema v1 · pii pii-v1

Severity

Low

Discovered

Aug 6, 2020

Filed

Aug 13, 2021

To disclose

12 months

Affected

Not disclosed

Linked

5 filings

Confidence

65%
Full breach record for Academic HealthPlans, Inc.4 incidents on file

Academic HealthPlans, Inc. (AHP), an insurance broker for the University of California, experienced an email phishing incident targeting employees. Unauthorized access occurred in two employees' Microsoft Office 365 email accounts between August 6, 2020, and August 24, 2020, and on October 2, 2020. The incident involved protected health information (PHI) and basic identity data (names). AHP notified the University of California on July 7, 2021, and is providing one year of identity monitoring via Kroll. No evidence of data exfiltration or misuse was found, but the possibility could not be ruled out.

California clockDiscovered Aug 6, 2020Notified Jul 7, 2021335d CA 60-day late12 months discovery → filing

Incident timeline

discovery → filing · 12 months / 372 days

Aug 6, 2020

Begins

Aug 6, 2020

Discovered

Aug 13, 2021

Filed

vs. sector median

+42 wks slower

This filing is one of 5 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (4) · sorted by filing gap

Filing propagation · 5 filings · 5 states

View merged incident ↗
Massachusetts State AGJul 20 · first
California State AG+24d · this page

Pattern: first filing Jul 20 (MA), last Aug 16 (IN) — a 27-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.