UnitedHealthcare Student Resources
bd_165616c6e14292ac · schema v1 · pii pii-v1
Full breach record for UnitedHealthcare Student Resources →4 incidents on fileUnitedHealthcare Student Resources disclosed a breach involving the MOVEit Transfer software vulnerability (zero-day) exploited starting May 27, 2023. Suspicious activity was detected on June 1, 2023. The incident impacted member data including names, SSNs, DOBs, and health claim information. The company took the server offline, applied patches, notified law enforcement, and offered two years of identity theft protection.
J jump to incidentP pin to compareR raw source
Incident timeline
May 27, 2023
Begins
Jun 1, 2023
Discovered
Jul 21, 2023
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Oregon State AGbd_48ebed8cd04231052023-07-21Candidate
- California State AGbd_8822f16abda9f1592023-07-21Verified
- Massachusetts State AGbd_d7702dec285304b52023-07-21Verified
- Indiana State AGbd_8b3990061741e7bc2023-07-22 · +1dVerified
Show 1 more filing ↓Show fewer ↑up to 5d gap
- Washington State AGbd_a943750d0cfa27222023-07-26 · +5dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Jul 21 (OR), last Jul 26 (WA) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.