Pivot Health
bd_402f88efda5882ec · schema v1 · pii pii-v1
Full breach record for Pivot Health →Pivot Health, a healthcare services provider, notified 27 Nebraska residents of a cybersecurity incident involving unauthorized access to its AWS environment between February 26 and March 13, 2026. The breach exposed names, health insurance details, and financial account information. Pivot Health engaged forensic specialists, secured systems, and provided 12 months of credit monitoring via TransUnion/Cyberscout.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 26, 2026
Begins
Mar 13, 2026
Discovered
May 13, 2026
Filed
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- HHS OCRbd_5e9b6541e84e9c312026-05-13Verified
- Indiana State AGbd_ad31b7125293ac892026-05-13Verified
- Texas State AGbd_9f2ddd7709ff477c2026-05-14 · +1dVerified
- Illinois State AGbd_a3c81cc6a3ee5cb42026-05-01 · +12dCandidate
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing May 1 (IL), last May 14 (TX) — a 13-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.