Health Plan of San Mateo
bd_de9fe860bf4d3e2c · schema v1 · pii pii-v1
Full breach record for Health Plan of San Mateo →3 incidents on fileHealth Plan of San Mateo disclosed an email phishing incident on January 17, 2023, where an unauthorized person accessed one employee email account. The attacker attempted to fraudulently change direct deposit information. A spreadsheet containing member names, dates of birth, member IDs, and limited nurse advice line call information was potentially exposed. No SSNs or financial data were involved. The company engaged a cybersecurity firm, reviewed the mailbox, enhanced security measures, and provided employee training.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 17, 2023
Begins
Jan 17, 2023
Discovered
Mar 17, 2023
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- HHS OCRbd_832929322c4b59cb2023-03-17Candidate
Filing propagation · 2 filings
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.