Blue Cross and Blue Shield of Kansas City
ent_019e0d6acba02c969e10cbcdde946117
Disclosures
7
State AG · HHS OCR · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
47,035
nationwide · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Blue Cross and Blue Shield of Kansas City
- Normalized
- blue cross and blue shield of kansas city— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300IU5VVY67QEP418
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- Massachusetts State AGas victim2021-06-03
Blue Cross and Blue Shield of Kansas City reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-06-03. 17 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2021-06-02
Blue Cross and Blue Shield of Kansas City reported a data breach affecting 47,034 individuals, including 164 Maine residents. The breach occurred on February 23, 2021, and was discovered on March 27, 2021. Described as an external system breach or hacking, it resulted in the compromise of names and Social Security Numbers. The company began notifying affected individuals in writing on May 26, 2021, and offered 24 months of identity theft protection services.
- New Hampshire State AGas victim2021-05-28
Blue Cross and Blue Shield of Kansas City (BCBSKC) reported a data breach involving its third-party vendor, LogicGate, Inc. Unauthorized access to LogicGate's backup files occurred on February 23, 2021. BCBSKC data was not directly accessed, but member records stored by LogicGate were compromised. Approximately 47,035 individuals were affected, including 18 New Hampshire residents. Exposed data included names, dates of birth, addresses, insurance details, medical information, and Social Security numbers for a subset. BCBSKC notified affected members, law enforcement, and the Office for Civil Rights, and offered two years of credit monitoring via IDX.
- Montana State AGas victim2021-05-26
Blue Cross and Blue Shield of Kansas City notified Montana residents of a data breach involving its third-party vendor, LogicGate, Inc. Unauthorized access occurred on February 23, 2021, affecting member data including names, SSNs, and medical information. Blue KC systems were not directly accessed. Remediation included forensic review and enhanced safeguards.
- Indiana State AGas victim2021-05-26
Blue Cross and Blue Shield of Kansas City reported a data breach to the Indiana Attorney General. The breach occurred on 2021-02-23 and was reported on 2021-05-26. 36 Indiana residents were affected. 47,035 individuals affected in total.
- MISSOURIHHS OCRas victim2017-05-05
Blue Cross and Blue Shield of Kansas City reported to HHS on 2017-05-05 an Unauthorized Access/Disclosure affecting 725 individuals. An error caused PHI, including group health plan numbers and member IDs, to be mailed to wrong recipients. Blue KC notified individuals and media, added quality checks, and re-trained the employee.
- MISSOURIHHS OCRas victim2014-04-11
In February 2014, an internal employee of Blue Cross and Blue Shield of Kansas City (Health Plan, MO) exploited access to payment-by-phone systems to steal credit card information from 2,546 members making premium payments. Two members reported unauthorized charges, prompting investigation. The employee had a prior felony identity theft conviction missed due to an inaccurate background check by contractor Verifications Inc. The CE terminated the employee, replaced the background check vendor, notified HHS, individuals, and media, and reported to the FBI and local law enforcement. OCR confirmed corrective actions. Location of breached information: Other.