Cohere Health
bd_d2536a540e50248e · schema v1 · pii pii-v1
Full breach record for Cohere Health →3 incidents on fileWelltok, Inc. notified Cohere Health customers of a data breach involving the MOVEit Transfer server. An unknown actor exploited a vulnerability in the software on May 30, 2023, accessing and exfiltrating data including names, DOB, SSNs, and PHI. Welltok discovered the compromise on July 26, 2023, after applying patches. Approximately 1,345 Rhode Island residents were identified as affected. Welltok engaged third-party cybersecurity specialists, reconstructed systems, and offered credit monitoring and identity restoration services.
J jump to incidentP pin to compareR raw source
Incident timeline
May 30, 2023
Begins
Jul 26, 2023
Discovered
Dec 14, 2023
Filed
vs. sector median
+8 wks slower
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Washington State AGbd_9690dc598754ddee2023-12-15 · +1dVerified
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.