HUMANA INC.
bd_8fc2d10420301176 · schema v1 · pii pii-v1
Full breach record for HUMANA INC. →40 incidents on fileThreat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Cl0p on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Humana Inc. is a leading US-based health insurance company, founded in 1961. Its coverage extends across the country, providing a range of insurance products and health and wellness services. These include medical, dental, and vision insurance, along with pharmacy services and health information technology solutions. Humana largely focuses on senior citizens, especially those enrolled in Medicare. The company is keen on fostering healthy habits and promoting preventive care efforts.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Nov 21, 2025
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- Idaho State AGbd_52560034b40b0f2a2026-03-27 · +125dVerified
- Texas State AGbd_22aeccc5358a90112026-04-24 · +153dVerified by operator
- Idaho State AGbd_9d83c93a948631422026-04-30 · +159dVerified by operator
- Illinois State AGbd_7c6eea2e34a068c22026-05-01 · +160dVerified
Show 6 more filings ↓Show fewer ↑up to 208d gap
- Illinois State AGbd_8ed01c44f5316bd22026-05-01 · +160dVerified
- HHS OCRbd_1b2396b69d25cc382026-05-15 · +174dVerified
- Nebraska State AGbd_960ec039543338a62026-06-01 · +191dVerified
- New Hampshire State AGbd_340755f98cffa7042026-06-12 · +202dVerified by operator
- Massachusetts State AGbd_60905841e9eb00ec2026-06-12 · +202dVerified by operator
- Texas State AGbd_bb1cc89a278c171c2026-06-18 · +208dVerified by operator
Showing first 10 of 15 linked disclosures.
Filing propagation · 11 filings · 7 states
View merged incident ↗Pattern: first filing Nov 21, last Jun 18 (TX) — a 208-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Cascade drawn from the first 10 linked disclosures of 15 — the full spread may be wider.
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.