HackingVulnerability ExploitData ExfiltratedCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPHIHighContained
Cohere
bd_d2536a540e50248e · schema v1 · pii pii-v1
Full breach record for Cohere →Welltok, Inc. notified Cohere Health customers of a data breach involving the MOVEit Transfer server. An unknown actor exploited a vulnerability in the software on May 30, 2023, accessing and exfiltrating data including names, DOB, SSNs, and PHI. Welltok discovered the compromise on July 26, 2023, after applying patches. Approximately 1,345 Rhode Island residents were identified as affected. Welltok engaged third-party cybersecurity specialists, reconstructed systems, and offered credit monitoring and identity restoration services.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1,345 affectedView incident
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2023/12/Welltok.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 14, 2023
- Raw hash
- a723892233d678e6f521825586823c75b81ab13eab41276cfa8c405e23889729
Reporting entity
- Name
- Welltoknorm: welltok
- Domain
- welltok.com
Victim entity
- Name
- Coherenorm: cohere
- Domain
- cohere.com
Incident
- Discovered
- Jul 26, 2023
- Materiality determined
- —
- Notification sent
- Dec 12, 2023
- Affected individuals
- 1,345
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPHI
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 20 weeks(141 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.