CareSource
bd_a5a734fce487738a · schema v1 · pii pii-v1
Full breach record for CareSource →6 incidents on fileCareSource experienced a security breach involving its vendor MOVEit. On May 31, 2023, the MOVEit software was hacked, allowing an unauthorized actor to access and copy data used to manage member benefits. CareSource learned of its inclusion in the breach on June 27, 2023. The compromised data included protected health information (PHI) such as names, addresses, dates of birth, Social Security numbers, member IDs, plan names, health conditions, medications, allergies, and diagnoses. CareSource patched the software on June 1, 2023, cutting off the attacker's access. The company is conducting a full investigation and has offered two years of credit monitoring through Kroll to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline
May 31, 2023
Begins
Jun 27, 2023
Discovered
Aug 28, 2023
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitecl0pbd_92cee760ff4463cd2023-06-29 · +60dVerified by operator
Regulatory filings (7) · sorted by filing gap
- Massachusetts State AGbd_6a936f6fd472b50c2023-08-28Verified by operator
- New Hampshire State AGCL0Pbd_023953673f35b8272023-08-30 · +2dVerified
- Washington State AGbd_8cae43083631f0182023-08-30 · +2dVerified by operator
- Vermont State AGbd_6c68eb604349c96d2023-08-25 · +3dVerified by operator
Show 3 more filings ↓Show fewer ↑up to 239d gap
- HHS OCRbd_15516622e95b67bb2023-07-27 · +32dVerified by operator
- New Hampshire State AGbd_ad59de38582addd52023-07-18 · +41dVerified by operator
- Illinois State AGbd_40d83cd3b7afec812023-01-01 · +239dVerified by operator
Filing propagation · 8 filings · 7 states
View merged incident ↗Pattern: first filing Jan 1 (IL), last Aug 30 (WA) — a 241-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.