Multiplan, Inc
bd_8120775c18837313 · schema v1 · pii pii-v1
Aspen American Insurance Company notified Montana residents of a data breach involving its vendor, Multiplan, Inc. Between Dec 23, 2020 and Jan 27, 2021, an outside actor accessed a Multiplan employee's email account via phishing, potentially diverting wire payments and accessing customer billing information. Multiplan terminated access, reset credentials, engaged forensic experts, and notified law enforcement. Aspen offered 2 years of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 23, 2020
Begins
Jan 27, 2021
Discovered
Oct 26, 2021
Filed
vs. sector median
+30 wks slower
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Massachusetts State AGbd_54e81f2742c542682021-10-22 · +4dVerified
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.