DisclosureLens
Social EngineeringHealthcareHealthcarePhishingStolen CredentialsEmployee Data InvolvedIdentity (basic)Government IDEmploymentMediumContained

Birdi

bd_5001f6d9bf2f61dc · schema v1 · pii pii-v2

Severity

Medium

Discovered

Aug 12, 2026

Filed

Sep 1, 2026

To disclose

Affected

Not disclosed

Confidence

69%
Full breach record for Birdi2 incidents on file

Birdi, Inc. notified employees of a data breach on August 12, 2026, where an unauthorized individual accessed an employee's work email via a malicious file attachment. The attacker accessed an internal report containing employee names, SSNs, addresses, phone numbers, and pay rates. The incident was contained the same evening. No patient health information was involved. Birdi is offering 18 months of credit monitoring.

Incident timeline

Aug 12, 2026

Begins

Aug 12, 2026

Discovered

Sep 1, 2026

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.