Brightline
bd_d59ed55c5ee4770a · schema v1 · pii pii-v1
Full breach record for Brightline →Brightline, Inc., a virtual healthcare services provider, disclosed a data security incident involving its vendor, Fortra (formerly HelpSystems). On January 30, 2023, Fortra identified unauthorized access to its GoAnywhere file transfer software. Brightline learned of the incident on February 4, 2023, and immediately engaged its incident response plan, terminating unauthorized access. The incident involved the acquisition of files containing eligibility information, including name, member ID, group ID, gender, and date of birth. Brightline is offering 24 months of complimentary identity theft restoration and credit monitoring services through Cyberscout.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 30, 2023
Begins
Feb 4, 2023
Discovered
May 12, 2023
Filed
vs. sector median
+2 wks slower
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- California State AGbd_0868c3f9cf5006022023-05-10 · +2dVerified
- HHS OCRbd_4c63e3855981b1222023-05-10 · +2dVerified
- Maine State AGbd_b69375073a6e96d42023-05-10 · +2dVerified
- California State AGbd_bf99fc2a4df4a34d2023-05-17 · +5dVerified
Show 6 more filings ↓Show fewer ↑up to 25d gap
- Oregon State AGbd_163db05cc4cb89582023-05-02 · +10dVerified by operator
- HHS OCRbd_f567c60a6fd57cc42023-05-26 · +14dVerified
- California State AGbd_a1b16fb406ed3ce92023-04-21 · +21dVerified
- HHS OCRbd_a0176e4142b0a3702023-04-20 · +22dVerified
- Vermont State AGbd_5ea7d3fbb2a5464a2023-04-19 · +23dVerified
- New Hampshire State AGbd_ab681e087aaa2ef42023-04-17 · +25dVerified
Showing first 10 of 25 linked disclosures.
Filing propagation · 11 filings · 5 states
View merged incident ↗Pattern: first filing Apr 17 (NH), last May 26 (CA) — a 39-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Cascade drawn from the first 10 linked disclosures of 25 — the full spread may be wider.
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.