University of Minnesota Physicians
bd_9c24cd515acb8e73 · schema v1 · pii pii-v1
Full breach record for University of Minnesota Physicians →3 incidents on fileUniversity of Minnesota Physicians experienced a data security event where cyber attackers used phishing emails to fraudulently access two employee email accounts between January 30 and February 4, 2020. The incident potentially exposed PHI, PII, and financial data for patients, including minors. The organization secured the accounts, engaged forensic investigators, and offered 12 months of identity monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 30, 2020
Begins
Jan 31, 2020
Discovered
Nov 25, 2020
Filed
vs. sector median
+32 wks slower
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Montana State AGbd_fbc943933d7fe4872020-11-25Verified
- Illinois State AGbd_b82836e6bbb094fb2020-01-01 · +329dCandidate
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Jan 1 (IL), last Nov 25 (CA) — a 329-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.