AccidentalMisconfigurationCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
FIRSTSOURCE HEALTH PLANS AND HEALTHCARE SERVICES, LLC
bd_a689a702e0a22d4e · schema v1 · pii pii-v1
Full breach record for FIRSTSOURCE HEALTH PLANS AND HEALTHCARE SERVICES, LLC →Firstsource Healthplans and Healthcare Services, LLC, a healthcare technology service provider, disclosed a programming error on its platform that potentially exposed protected health information and standalone Social Security numbers. The vulnerability was active from July 16, 2025, to January 15, 2026, and was discovered on May 18, 2026. Firstsource engaged forensic investigators, patched the vulnerability, and offered credit monitoring. No evidence of misuse was found.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2026/07/Sample-Notice-2.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 16, 2026
- Raw hash
- eeeefcc467dd15738545eb371ed905b22be2940c776e467b1d57695198cc6f84
Reporting entity
- Name
- FIRSTSOURCE HEALTH PLANS AND HEALTHCARE SERVICES, LLCnorm: firstsource health plans and healthcare
Victim entity
- Name
- FIRSTSOURCE HEALTH PLANS AND HEALTHCARE SERVICES, LLCnorm: firstsource health plans and healthcare
Incident
- Discovered
- May 18, 2026
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1562 Impair Defenses
- Threat actor
- External
Compliance
- Time to disclose
- 29 days(29 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.