CoPilot Provider Support Services
ent_431b18cf742154cb35d19056
Disclosures
6
State AG · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
220,000
nationwide · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- CoPilot Provider Support Services
- Normalized
- copilot provider support— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (6)newest first
- California State AGas victim2017-01-19
CoPilot Provider Support Services, Inc. experienced unauthorized access to its database via a website used by physicians to check insurance coverage for ORTHOVISC and MONOVISC injections. The incident occurred in October 2015 and was discovered on December 23, 2015. An individual accessed the database through unauthorized means and downloaded health information, including names, dates of birth, addresses, phone numbers, and medical insurance card information. One version of the notice indicated Social Security numbers were not involved, while another indicated they were. CoPilot engaged a cybersecurity firm, referred the matter to law enforcement, and offered one year of identity monitoring through Kroll.
- Massachusetts State AGas victim2017-01-19
CoPilot Provider Support Services reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-01-19. 5,151 Massachusetts residents were affected. The report records the breach type as electronic.
- Oregon State AGas victim2017-01-19
CoPilot Provider Support Services, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2017-01-19. The breach was discovered on 12/23/2015. 220,000 individuals were affected. Notice was sent on 1/18/2017.
- Montana State AGas victim2017-01-18
CoPilot Provider Support Services, Inc. notified Montana residents of a data security incident occurring in October 2015. Unauthorized access to the monovischcp.com website resulted in the download of personal and health information, including SSNs and insurance details. CoPilot engaged forensic investigators, referred the matter to law enforcement, and offered one year of Kroll identity monitoring services.
- Washington State AGas victim2017-01-18
CoPilot Provider Support Services, Inc. notified Washington AG of unauthorized access to its website portal in Dec 2015. Data accessed included names, DOB, addresses, insurance info, and SSNs for 1,522 residents. Incident resolved; law enforcement notified; credit monitoring offered.
- New Hampshire State AGas victim2017-01-18
CoPilot Provider Support Services, Inc. notified the NH AG of unauthorized access to its website database starting in October 2015. The incident affected 728 NH residents, exposing names, DOBs, addresses, insurance info, and SSNs for a subset. CoPilot identified the individual responsible, notified law enforcement, and provided credit monitoring.
Supply-chain cascadesreviewed and confirmed
- CoPilot Provider Support Services supply-chain incident (2017)2017-09-26 – 2018-07-034 organizations linked