Blue Shield of California
bd_abbe3d6cbb3d0d5c · schema v1 · pii pii-v1
Blue Shield of California notified members of a ransomware attack on August 25, 2021 targeting Team Alvarez, a Blue Shield broker. The unauthorized access was terminated the same day. Potentially exposed PHI included names, addresses, phone numbers, email addresses, dates of birth, gender, subscriber ID numbers, policy effective dates, emergency contact information, and broker information. No SSNs, driver's license numbers, or financial account data were accessed. Blue Shield offered one year of complimentary Experian IdentityWorks to affected members.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 25, 2021
Begins
Oct 27, 2021
Filed
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Massachusetts State AGbd_28504576b73795342021-10-27Verified
- HHS OCRbd_657b90381e79745a2021-10-27Verified
Filing propagation · 3 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.