AETNA LIFE INSURANCE COMPANY
ent_019e2264e2d16b138ecd3297c17c28a9
Disclosures
8
State AG · 6 jurisdictions
Multi-filing incidents
3
incidents joining 2+ filings here
Max affected reported
310,019
as filed · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- AETNA LIFE INSURANCE COMPANY
- Normalized
- aetna life insurance— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- SPCOIWBJM0HFYQX3A364
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
- Corporate parent
- CVS HEALTH CORPORATION— per GLEIF relationship records
Disclosure history (8)newest first
- 🦞Maine State AGas victim2023-12-01
Aetna Life Insurance Company reported a cybersecurity incident occurring on May 29, 2023, discovered on June 6, 2023. The breach involved unauthorized access via a software vulnerability in an external system. Approximately 310,019 individuals were affected, including 1,017 Maine residents. The incident compromised names and Social Security Numbers. Aetna notified affected individuals in writing starting September 14, 2023, and offered 12 months of credit monitoring and identity restoration services through Kroll.
- 🥔Idaho State AGas reporting2023-11-29
Aetna Life Insurance Company reported a security incident involving its third-party vendor, Pension Benefits, LLC (dba PBI Research Services). The breach impacted 1,008 Idaho residents. Aetna notified the Idaho Attorney General and sent notices to the affected individuals.
- 💎Delaware State AGas victim2023-09-14
Pension Benefit Information, LLC (PBI) disclosed a data breach involving MOVEit Transfer software exploited by an unauthorized third party on May 29-30, 2023. The incident affected data belonging to clients, including Aetna Life Insurance. PBI patched servers, investigated, and offered 12 months of credit monitoring. Data potentially exposed included names and government identifiers.
- 🦞Maine State AGas victim2023-09-12
Aetna Life Insurance Company reported a data breach affecting 970 Maine residents. The breach was discovered on June 6, 2023, and occurred on May 29, 2023. The incident was an external system breach due to a software vulnerability, resulting in the compromise of names and Social Security numbers. Aetna offered 12 months of credit monitoring and identity restoration services to affected individuals.
- 🥔Idaho State AGas reporting2023-09-12
Aetna Life Insurance Company notified the Idaho Attorney General of a security incident involving its third-party vendor, Pension Benefits Information (PBI). PBI's MOVEit Transfer server was exploited, impacting 903 Idaho residents. Data included names, SSNs, and DOBs. PBI engaged Kroll for forensics and offered credit monitoring.
- 🌲Washington State AGas victim2023-09-08
Aetna Life Insurance Company, a health sector entity reported a ransomware incident to the Washington Attorney General. The organization became aware of the incident on 2023-06-06 and filed notice on 2023-09-08. 2,303 Washington residents were affected. 94 days elapsed between awareness and notification. 8 days to identify the breach. 116 days to contain the breach.
- 🦬Montana State AGas victim2023-09-07
Aetna Life Insurance Company reported a data breach to the Montana Attorney General. The breach was reported on 2023-09-07. The breach occurred from 5/29/2023 to 5/30/2023. 831 Montana residents were affected.
- 🐻California State AGas reporting2023-09-01
Pension Benefit Information, LLC (PBI) disclosed a data breach resulting from the exploitation of a vulnerability in Progress Software's MOVEit Transfer software. An unauthorized third party accessed PBI's MOVEit server on May 29-30, 2023, and downloaded data. The compromised information included names and other basic identity data. PBI patched servers, investigated the incident, and is offering 12 months of credit monitoring and identity restoration services via Kroll to affected individuals. This was a supply-chain attack via a third-party vendor.