Highmark Inc
bd_f08d1e5c8ae3fa0f · schema v1 · pii pii-v1
Full breach record for Highmark Inc →8 incidents on fileHighmark Health notified individuals of a phishing incident where an employee's email was compromised between Dec 13-15, 2022. The attacker accessed emails containing PHI, including names, enrollment info, claims data, and financial info. Highmark shut down the mailbox, reset passwords, and offered 24 months of Experian IdentityWorks.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 13, 2022
Begins
Dec 15, 2022
Discovered
Feb 7, 2023
Filed
vs. sector median
5 wks faster
Linked disclosures
Why this link?Regulatory filings (9) · sorted by filing gap
- Washington State AGbd_942a588b7d88d2c32023-02-06 · +1dVerified
- HHS OCRbd_67a2105beb6464002023-02-10 · +3dVerified
- HHS OCRbd_979c36a1443ad8f12023-02-10 · +3dVerified
- Indiana State AGbd_b1db1c0f4716a2872023-02-10 · +3dVerified
Show 5 more filings ↓Show fewer ↑up to 139d gap
- Delaware State AGbd_b2b69efe74984e652023-02-10 · +3dVerified
- California State AGbd_e3ddb304e00287ca2023-02-03 · +4dCandidate
- Maine State AGbd_f75581b2eb9ebe572023-02-03 · +4dVerified
- Delaware State AGbd_9b2ceab0938674db2023-02-15 · +8dVerified
- New Hampshire State AGbd_445a421e449e6ca32023-06-26 · +139dVerified
Filing propagation · 10 filings · 8 states
View merged incident ↗Pattern: first filing Feb 3 (CA), last Jun 26 (NH) — a 143-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.