Cierant
ent_00bd73ca55a5d01310382869
Disclosures
10
State AG · HHS OCR · Leak Site · 7 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
232,506
nationwide · State AG TX
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- Cierant
- Normalized
- cierant— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- cierant.com
Disclosure history (10)newest first
- Texas State AGas victim2025-07-08
Cierant Corporation based in Bethel, Connecticut, a business – retail or merchant entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-05-05 and reported on 2025-07-08. 1,576 Texas residents were affected. 232,506 individuals affected in total. Types of information involved: Name of individual;Address;Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via Posted at company website or special website;U.S. Mail.
- Montana State AGas reporting2025-07-07
Cierant Corporation, on behalf of Blue Cross and Blue Shield of Massachusetts, disclosed a data security event involving the third-party file transfer tool Cleo VLTrader. Cierant detected suspicious activity on December 10, 2024, and determined an unauthorized actor exploited a vulnerability in the tool to access systems and potentially acquire files. Personal information, including identity data, may have been involved. Cierant ceased use of the tool, rotated passwords, enhanced security controls, and notified law enforcement and regulators. Affected individuals are offered 12 months of credit monitoring.
- Washington State AGas victim2025-07-07
Cierant Corporation filed a supplemental notification with the Washington AG regarding a cyberattack involving the third-party tool Cleo VLTrader. The incident, discovered on Dec 10, 2024, involved unauthorized access exploiting a vulnerability, affecting personal information of Washington residents. Cierant engaged law enforcement, rotated credentials, and offered credit monitoring.
- California State AGas reporting2025-07-07
Cierant Corporation, a distributed marketing software vendor for Blue Cross and Blue Shield of Massachusetts, disclosed a data security event involving a vulnerability in the third-party file transfer tool Cleo VLTrader. An unauthorized actor exploited this vulnerability to gain limited access to Cierant systems, potentially acquiring files containing personal information of approximately 1,422 Rhode Island residents. The incident was discovered on December 10, 2024. Cierant ceased use of the tool, rotated passwords, and is offering credit monitoring.
- Washington State AGas victim2025-07-07
Cierant Corporation, a distributed marketing software company, disclosed a data security event affecting health plan member data. An unauthorized actor exploited a vulnerability in the third-party Cleo VLTrader secure file transfer tool to gain access to systems. The incident impacted approximately 902 individuals, including names, addresses, dates of birth, medical record numbers, and health plan beneficiary numbers. The breach was discovered on December 10, 2024, and notifications were sent on July 3, 2025.
- Montana State AGas victim2025-07-07
Cierant Corporation notified Montana residents of a data security event discovered on December 10, 2024. An unauthorized actor exploited a vulnerability in the third-party Cleo VLTrader secure file transfer tool to gain access to Cierant systems. The incident compromised personal and health information, including names, addresses, dates of birth, medical record numbers, and health plan beneficiary numbers. The breach also affected minors' data. Cierant ceased using the tool, rotated passwords, enhanced security controls, and notified law enforcement and regulators. Approximately 373 Rhode Island residents were identified as impacted.
- California State AGas victim2025-07-07
Cierant Corporation disclosed a data security event where an unauthorized actor exploited a vulnerability in the third-party Cleo VLTrader secure file transfer tool. The incident was discovered on December 10, 2024, with the breach occurring on December 9, 2024. Affected data included PHI such as names, addresses, dates of birth, treatment dates, provider names, and medical record numbers for health plan members, including minors. No SSNs or financial information were involved. Cierant ceased use of the tool, rotated passwords, and enhanced security controls.
- CONNECTICUTHHS OCRas victim2025-07-03
Cierant Corporation reported to HHS on 2025-07-03 a Hacking/IT Incident affecting 232506 individuals. Breached information located on Network Server. Business Associate present.
- Illinois State AGas victim2025-07-01
CIERANT CORPORATION filed a data-breach notice with the Illinois Attorney General in July 2025 (case 25-07-302). The register records the breach as discovered on December 10, 2024. Personal information types reported: drivers license, medical information. Additional entities named: CLEO VLTRADER. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- GLOBALLeak Siteas victim2025-02-01
CIERANT.COM, commonly known as Cierant Corporation, is a technology solutions company based in the United States. It specializes in developing advanced software solutions, complex data management, electronic content management, business process automation and custom communications. Their services are aimed towards improving operational efficiencies and productivity in various businesses.