FEDERALUnknownHealthcareFinanceLowActive
UnitedHealth Group Incorporated
bd_ffca7358ebc5bf35 · schema v1 · pii pii-v1
Full breach record for UnitedHealth Group Incorporated →UnitedHealth Group's FY2023 10-K Item 1C briefly notes a cybersecurity incident disclosed on February 22, 2024, believed to have been committed by cybercrime threat actors. The company states the investigation is ongoing and that, as of the report date, it has not determined the incident is reasonably likely to materially impact its financial condition or results of operations. No technical details, affected individual count, data types, or attack vector are disclosed in this filing.
Leak gap clock✗ Leak >180d
⚠ no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
This filing is one of 2 about the same incident.View merged incident
A leak claim by cl0p about this victim predates this filing by 259 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_9fd1bff034857db1Leak Sitecl0pfiled 2023-06-14(259d gap)Candidate
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/731766/000073176624000081/unh-20231231.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Feb 28, 2024
- Raw hash
- 5a5d68aa5a839be37eb32520c75615d84579d9b4a1be379ae64470d5230af762
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- UnitedHealth Group Incorporatednorm: unitedhealth group
- SEC CIK
- 0000731766
- Domain
- unitedhealthgroup.com
Victim entity
- Name
- UnitedHealth Group Incorporatednorm: unitedhealth group
- SEC CIK
- 0000731766
- Domain
- unitedhealthgroup.com
- Industry
- Healthcarellm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Feb 22, 2024
- Affected individuals
- Not disclosed
- Data types
- —
- Attack vector
- Unknown
- Threat actor
- ExternalFinancial
Compliance
- Compliance flags
- Leak >180d
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.