California Physicians' Services d/b/a Blue Shield of California
bd_970492f4cf7c2d6f · schema v1 · pii pii-v1
Blue Shield of California notified members that a third-party subcontractor, Fortra, LLC, suffered a cybersecurity incident between January 28-31, 2023. An unauthorized individual accessed Fortra's GoAnywhere MFTaaS application and potentially exfiltrated files maintained by Blue Shield's provider, Brightline Medical Associates. Affected data included names, addresses, dates of birth, gender, subscriber IDs, phone numbers, emails, and plan information. No SSNs or financial data were accessed. Blue Shield locked communications with Brightline and offered one year of Experian IdentityWorks.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 28, 2023
Begins
Feb 5, 2023
Discovered
Mar 31, 2023
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- HHS OCRbd_ee6a7f6e4dfb6cfd2023-04-04 · +4dVerified
- Maine State AGbd_7469869418d10b622023-03-27 · +4dVerified
- HHS OCRbd_2a8212bd5ec634b72023-04-05 · +5dVerified
Filing propagation · 4 filings · 2 states
View merged incident ↗Pattern: first filing Mar 27 (ME), last Apr 5 (CA) — a 9-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.