MalwareProfessional ServicesHealthcareProfessional ServicesRansomwareData EncryptedRansom DemandedBusiness Associate (HIPAA)Customer Data InvolvedPIIPHIIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICMediumResolved
Wolverine Solutions Group
bd_4602af0c0261787c · schema v1 · pii pii-v1
Full breach record for Wolverine Solutions Group →On approximately September 23, 2018, Wolverine Solutions Group, a services provider for health-related business clients, experienced a ransomware attack that locked up its servers and workstations. The company performed services for Blue Cross Blue Shield of Michigan, and affected data included demographic information, health plan contract numbers, medical information, and Social Security numbers. A forensics investigation found no evidence of data extraction. Notification letters were sent December 28, 2018, with 24 months of AllClear ID identity protection offered.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_f1d8b234d0152549HHS OCRfiled 2018-12-28Verified
- bd_ba0d269a5a8a147cMontana State AGfiled 2018-12-27(1d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-143325
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 28, 2018
- Raw hash
- bb60a0b89b20882d26fecf0559b32deff66f4f8ccf881786208afa7edf7c5dc3
Reporting entity
- Name
- Wolverine Solutions Groupnorm: wolverine solutions
Victim entity
- Name
- Wolverine Solutions Groupnorm: wolverine solutions
- Industry
- Professional ServicesllmHealthcarellm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Dec 28, 2018
- Affected individuals
- Not disclosed
- Data types
- PIIPHIIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Third party
- via Blue Cross Blue Shield of Michigan
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.