MalwareRansomwarePhishingData ExfiltratedData EncryptedCustomer Data InvolvedRansom DemandedIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICIDENTITY_BASICMediumContained
Magellan Health
bd_9e737f4798eb5a36 · schema v1 · pii pii-v1
Full breach record for Magellan Health →Magellan Health Inc. disclosed a ransomware attack discovered on April 11, 2020, following a phishing email on April 6. The incident compromised personal information including SSNs, financial data, and health records. Magellan engaged Mandiant for investigation, notified the FBI, and implemented enhanced security protocols. Affected individuals were offered two years of Experian IdentityWorks monitoring.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_5bd5952fe83a4024Oregon State AGfiled 2020-05-11(1d gap)Candidate
- bd_ab19fc861c82e826California State AGfiled 2020-05-11(1d gap)Verified
- bd_ae473065eafe4312Montana State AGfiled 2020-05-11(1d gap)Verified
- bd_c7cf9063b0b75322Washington State AGfiled 2020-05-11(1d gap)Verified
Show 2 more filings ↓Show fewer ↑up to 31d gap
- bd_34de5bda8012b71cCalifornia State AGfiled 2020-06-12(31d gap)Verified
- bd_8bced8d5ed3979b9HHS OCRfiled 2020-06-12(31d gap)Verified
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Business%20Resources%20Laws/Related%20Laws/Breaches/2020/Magellan.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 12, 2020
- Raw hash
- 8d42bee8745f49d556d5a731150cc464972478713013ca817e20a7c23269a487
Reporting entity
- Name
- Magellan Healthnorm: magellan health
- Domain
- magellanhealth.com
Victim entity
- Name
- Magellan Healthnorm: magellan health
- Domain
- magellanhealth.com
Incident
- Discovered
- Apr 11, 2020
- Materiality determined
- —
- Notification sent
- Jun 15, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICIDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- ExternalFinancial
- Regulator citations
- Reported the incident to appropriate law enforcement authorities, including the FBI
- Initial access
- phishing_link
Compliance
- Time to disclose
- 4 weeks(31 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.