HackingVulnerability ExploitCapture Stored DataData ExfiltratedTargetedIDENTITY_BASICHEALTH_BASICFINANCIAL_ACCOUNTLowContained
Welltok
bd_57aa66e4578bd891 · schema v1 · pii pii-v1
Full breach record for Welltok →Welltok, Inc. notified South Carolina residents of a data breach involving its MOVEit Transfer server. An unknown actor exploited software vulnerabilities on May 30, 2023, to access the server and exfiltrate data including names, health information, and insurance details. Welltok engaged third-party cybersecurity specialists and is offering 12 months of credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Security%20Breach%20Notices/2024/WelltokInc.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 24, 2024
- Raw hash
- fd09eb5d4804d4e978a8970f516a62738b057c204e823ef30ba24cf19685c4d0
Reporting entity
- Name
- Welltoknorm: welltok
- Domain
- welltok.com
Victim entity
- Name
- Welltoknorm: welltok
- Domain
- welltok.com
Incident
- Discovered
- Jul 26, 2023
- Materiality determined
- —
- Notification sent
- Feb 21, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICHEALTH_BASICFINANCIAL_ACCOUNT
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 43 weeks(303 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.