HUMANA INC.
bd_af457bc18d369cb0 · schema v1 · pii pii-v1
Full breach record for HUMANA INC. →40 incidents on fileHumana Inc. (covered entity) reported that one of its business associates suffered a ransomware attack that affected the ePHI of 1,965 individuals. Compromised data included names, addresses, dates of birth, Social Security numbers, and claims/financial information. The BA notified affected individuals and the media and implemented additional technical and security safeguards; HHS OCR provided technical assistance on the HIPAA Breach Notification Rule.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Nov 4, 2021
Filed
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- HHS OCRbd_f547a5594bd4d9702021-11-09 · +5dVerified
- Indiana State AGbd_a1260383936f6b4c2021-11-12 · +8dVerified
Filing propagation · 3 filings · 2 states
View merged incident ↗Pattern: first filing Nov 4 (KY), last Nov 12 (IN) — a 8-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.