AccidentalMisconfigurationDelayed DiscoveryCustomer Data InvolvedIDENTITY_GOVERNMENTHEALTH_BASICMediumContained
TriZetto Provider Solutions
bd_3eaebb2b06d3a725 · schema v1 · pii pii-v1
Full breach record for TriZetto Provider Solutions →Ingenix reported a security breach to the New Hampshire Attorney General on January 6, 2011. The incident involved the potential exposure of health service providers' data, including Social Security numbers, due to a misconfiguration. The breach persisted for approximately five years. Ingenix notified 142 affected providers in New Hampshire and offered them free credit monitoring and credit restoration services.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed142 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/ingenix-20110106.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 6, 2011
- Raw hash
- bbffd1390c38355682462fa5f54c6f157b344655eaf35cd630bfbac04f1208d0
Reporting entity
- Name
- TriZetto Provider Solutionsnorm: trizetto provider
- Domain
- trizettoprovider.com
Victim entity
- Name
- TriZetto Provider Solutionsnorm: trizetto provider
- Domain
- trizettoprovider.com
Incident
- Discovered
- Jan 6, 2011
- Materiality determined
- —
- Notification sent
- Jan 6, 2011
- Affected individuals
- 142
- Data types
- IDENTITY_GOVERNMENTHEALTH_BASIC
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Regulator citations
- Reported the issue to the New Hampshire Attorney General's Office on January 6
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- ≤1 day(0 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.