DisclosureLens
HackingFinancial ServicesFinanceCustomer Data InvolvedEmployee Data InvolvedGovernment IDFinancial accountHealth (basic)PHIMediumContained

SAIF CORPORATION

bd_5c20e4602451a95f · schema v1 · pii pii-v1

Severity

Medium

Discovered

Oct 27, 2022

Filed

Dec 7, 2022

To disclose

6 weeks

Affected

Not disclosed

Linked

2 filings

Confidence

66%
Full breach record for SAIF CORPORATION3 incidents on file

SAIF Corporation notified the Idaho Attorney General of a data incident occurring on October 24, 2022, where an unauthorized third party gained access to its network. The breach affected archived policyholder and claimant data, potentially exposing SSNs, financial account numbers, and medical information. No evidence of misuse was found. SAIF offered 12 months of free credit monitoring and is reviewing internal security policies.

Incident timeline

undetected · 3 days
discovery → filing · 6 weeks / 41 days

Oct 24, 2022

Begins

Oct 27, 2022

Discovered

Dec 7, 2022

Filed

vs. sector median

3 wks faster

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
Oregon State AGDec 7 · first
Idaho State AGDec 7 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.