Datavant
ent_08c2345ee9b9d81b3009dce7
Disclosures
4
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
10,639
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Datavant
- Normalized
- datavant— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- idsb-portal.datavant.com
Disclosure history (4)newest first
- Montana State AGas victim2025-02-11
Datavant (Ciox Health LLC) notified Montana residents of a phishing attack on May 9, 2024. Unauthorized access occurred May 8-9, 2024, to a single user's mailbox. Impacted data included names, SSNs, financial accounts, driver's licenses, passports, and health information for patients, employees, and next of kin. Datavant engaged forensic experts, updated security safeguards, and provided 2 years of Kroll identity monitoring services.
- Illinois State AGas victim2025-01-01
DATAVANT filed a data-breach notice with the Illinois Attorney General in January 2025 (case 25-01-107). The register records the breach as discovered on July 11, 2024. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Vermont State AGas victim2024-12-06
Datavant (dba Ciox Health) notified consumers of a phishing attack on May 8-9, 2024 that compromised a single user's mailbox. Impacted data included names, addresses, financial account info, government IDs, and health information. Datavant engaged forensic experts, secured systems, and provided 2 years of Kroll identity monitoring services.
- Maine State AGas victim2024-12-06
Ciox Health LLC d/b/a Datavant Group reported a phishing incident affecting 10,639 individuals, including 12 Maine residents. Unauthorized access occurred May 8-9, 2024, via a compromised user mailbox. Data exposed included SSNs, financial accounts, health info, and credentials. Datavant engaged forensic investigators, reset credentials, and offered 24 months of Kroll credit monitoring.