BAESMAN GROUP
bd_6f0ff7c39c7e5084 · schema v1 · pii pii-v1
Full breach record for BAESMAN GROUP →3 incidents on fileBaesman Group, Inc. notified HealthSun Health Plans members of unauthorized access to a MOVEit Transfer server on May 29, 2023. The attacker exfiltrated PII including names, addresses, DOBs, and member IDs. Baesman Group investigated and enhanced privacy policies. Notices were sent on February 5, 2024.
J jump to incidentP pin to compareR raw source
Incident timeline
May 29, 2023
Begins
May 29, 2023
Discovered
Feb 5, 2024
Filed
vs. sector median
+24 wks slower
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- California State AGbd_dd0e6d5ccd2249d02024-02-12 · +7dVerified
- Oregon State AGbd_47adc8a39b47e7952024-02-29 · +24dVerified
- California State AGbd_808fe2ae0525500f2024-02-29 · +24dVerified
- Washington State AGbd_be036d2299c0c6a22024-02-29 · +24dVerified
Show 1 more filing ↓Show fewer ↑up to 24d gap
- Massachusetts State AGbd_f040b7be18297b812024-02-29 · +24dVerified
Filing propagation · 6 filings · 5 states
View merged incident ↗Pattern: first filing Feb 5 (MT), last Feb 29 (MA) — a 24-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.