FEDERALMalwareHealthcareProfessional ServicesHealthcareRansomwareBusiness Associate (HIPAA)Data ExfiltratedData EncryptedCustomer Data InvolvedPHIPIIIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIALHEALTH_BASICCriticalResolved
Horizon Actuarial
bd_50538dd08253dedf · schema v1 · pii pii-v1
Full breach record for Horizon Actuarial →Horizon Actuarial Services, LLC, a business associate based in Georgia, reported a ransomware attack that compromised the protected health information of 227,953 individuals. PHI involved included names, dates of birth, Social Security numbers, claims and financial information, and diagnoses. The BA notified HHS, affected individuals, and the media; posted substitute notice on its website; offered complimentary credit monitoring; and implemented additional administrative and technical safeguards.
HIPAA clock✓ HHS notified
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 20 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_3f0edaeb78405833Maine State AGfiled 2022-03-22(13d gap)Verified
- bd_53f26450ae728dacMaine State AGfiled 2022-03-22(13d gap)Verified
- bd_0137fc9d43a66d3dCalifornia State AGfiled 2022-03-25(16d gap)Verified
- bd_5111b6c88c94f7aaIdaho State AGfiled 2022-03-25(16d gap)Candidate
Show 6 more filings ↓Show fewer ↑up to 76d gap
- bd_3529f9df1be2849bMaine State AGfiled 2022-04-11(33d gap)Verified
- bd_ff25b9191ff88ab5Idaho State AGfiled 2022-04-11(33d gap)Verified
- bd_aebae786303bb6acMaine State AGfiled 2022-04-15(37d gap)Verified
- bd_570c80b01bbe9116Maine State AGfiled 2022-04-26(48d gap)Verified
- bd_68e3218b8c9d431dMaine State AGfiled 2022-05-10(62d gap)Verified
- bd_63ec2cad1130c87cMaine State AGfiled 2022-05-24(76d gap)Verified
Showing first 10 of 19 linked disclosures.
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Mar 9, 2022
- Raw hash
- d2ba43f6fa66f8795e81b6cd247bc21627169f68bbe8612ad962bc13844f1b8f
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- Horizon Actuarialnorm: horizon actuarial
- Domain
- horizonactuarial.com
Victim entity
- Name
- Horizon Actuarialnorm: horizon actuarial
- Domain
- horizonactuarial.com
- Industry
- Actuarial / Employee Benefits Services
- Industry
- Healthcaresource defaultProfessional Servicesllm
Incident
- Discovered
- Dec 29, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 227,953
- Data types
- PHIPIIIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIALHEALTH_BASIC
- Attack vector
- Ransomware
- Threat actor
- ExternalFinancial
- Third party
- via Horizon Actuarial Services, LLC
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: Dec 29, 2021→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.