Ciox Health
bd_b3dc1935edf30ecf · schema v1 · pii pii-v1
Full breach record for Ciox Health →5 incidents on fileCiox Health LLC d/b/a Datavant Group reported a phishing incident affecting 49,454 individuals. Unauthorized access occurred May 8-9, 2024, via compromised email accounts. Data exposed included names, SSNs, financial accounts, driver's licenses, and health information. Datavant engaged forensic experts, implemented security safeguards, and offered 24 months of Kroll identity monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
May 8, 2024
Begins
May 9, 2024
Discovered
Feb 11, 2025
Filed
vs. sector median
+28 wks slower
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Nebraska State AGbd_5a7f3d35a93b97ca2025-02-11Verified
- New Hampshire State AGbd_c8daf6858a2162c92024-12-09 · +64dVerified
- Indiana State AGbd_6a23636d969f92102024-12-06 · +67dCandidate
- Massachusetts State AGbd_f9476d2f682079122024-12-06 · +67dVerified
Show 1 more filing ↓Show fewer ↑up to 72d gap
- Illinois State AGbd_2ba6233f1ffdc2a02024-12-01 · +72dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Dec 1 (IL), last Feb 11 (ME) — a 72-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.