Elderplan, Inc.
bd_13fe1fe739542594 · schema v1 · pii pii-v1
Full breach record for Elderplan, Inc. →2 incidents on fileElderplan, Inc. (NY-based health plan) reported that several employees fell victim to an email phishing scheme, exposing ePHI of 65,235 individuals. Affected data included names, health insurance information, Social Security numbers, diagnoses, and other treatment information. The CE notified HHS, affected individuals, and the media; implemented additional administrative, technical, and security safeguards; and retrained workforce on identifying phishing emails. OCR obtained assurances of corrective actions.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Aug 5, 2017
Filed
—
No filing yet · watching
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.