DisclosureLens
HackingHealthcareHealthcareStolen CredentialsDelayed DiscoveryCustomer Data InvolvedIdentity (basic)Government IDPHIHealth (basic)HighActive

COVENANT HEALTH

bd_d2ea8a1171025f54 · schema v1 · pii pii-v1

Severity

High

Discovered

Dec 10, 2025

Filed

Jan 2, 2026

To disclose

23 days

Affected

1,338state residents only

Confidence

65%
Full breach record for COVENANT HEALTH2 incidents on file

Covenant Health, Inc. notified South Carolina AG of a data breach where an unauthorized party accessed patient IT systems starting May 18, 2025. Incident discovered Dec 10, 2025. Affected data includes names, SSNs, DOBs, medical record numbers, and PHI. Covenant engaged forensic specialists, enhanced IT security, and offered 1-year Experian IdentityWorks.

Leak gap clock Leak >180d23 days discovery → filing
unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.

Incident timeline

undetected · 206 days
discovery → filing · 23 days

May 18, 2025

Begins

Dec 10, 2025

Discovered

Jan 2, 2026

Filed

vs. sector median

9 wks faster

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1,338 affectedView incident
A leak claim by qilin about this victim predates this filing by 222 days.View originating leak claim

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.