CoPilot Provider Support Services
bd_3fcbaac7d52604cb · schema v1 · pii pii-v1
Full breach record for CoPilot Provider Support Services →CoPilot Provider Support Services, Inc. experienced unauthorized access to its database via a website used by physicians to check insurance coverage for ORTHOVISC and MONOVISC injections. The incident occurred in October 2015 and was discovered on December 23, 2015. An individual accessed the database through unauthorized means and downloaded health information, including names, dates of birth, addresses, phone numbers, and medical insurance card information. One version of the notice indicated Social Security numbers were not involved, while another indicated they were. CoPilot engaged a cybersecurity firm, referred the matter to law enforcement, and offered one year of identity monitoring through Kroll.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 1, 2015
Begins
Dec 23, 2015
Discovered
Jan 19, 2017
Filed
vs. sector median
+44 wks slower
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Massachusetts State AGbd_d14643924b1c25632017-01-19Verified
- Oregon State AGbd_e59a4c6a95b270632017-01-19Verified
- Montana State AGbd_1124dc30d1055ed72017-01-18 · +1dCandidate
- Washington State AGbd_1c6e96eda7cdcd682017-01-18 · +1dVerified
Show 1 more filing ↓Show fewer ↑up to 1d gap
- New Hampshire State AGbd_7f55bdba42d2e8312017-01-18 · +1dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.