Clustered 4 filings across 4 jurisdictions · filing window Nov 30, 2020 → Jan 27, 2021. View entity profile → Other incidents for this victim →
incident inc_609c68e002b341c7 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
PII · Identity (basic)
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
CA DE ME SC
all State AG
Earliest sighting first · deep chronology in Litigation Timeline
Jun 24, 2020 → Jul 1, 2020
When the intrusion reportedly occurred, per the linked filings
Jul 1, 2020
Reported by MAINE AG, CALIFORNIA AG, DELAWARE AG, SOUTH CAROLINA AG filings
EyeMed Vision Care LLC notified South Carolina residents of a data breach occurring between June 24 and July 1, 2020. An unauthorized individual accessed an EyeMed email mailbox and sent phishing emails to contacts in the address book. EyeMed secured the mailbox, engaged a cybersecurity firm, reset passwords, and provided two years of free identity monitoring via Kroll. Personal information of vision benefit recipients may have been accessed.
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
EyeMed Vision Care LLC reported an unauthorized access incident occurring between June 24, 2020, and July 1, 2020. The breach affected approximately 2,329,942 individuals, including 23,057 Maine residents. The incident involved the acquisition of Social Security Numbers and personal identifiers. EyeMed notified affected individuals in writing on September 28, 2020, and offered identity theft protection services.
Affected (this filing): 2,329,942
Aetna (via EyeMed) reported a data breach affecting vision benefit recipients. An unauthorized individual accessed an EyeMed email mailbox on June 24, 2020, and sent phishing emails to the address book. Access was terminated on July 1, 2020. Personal information of individuals receiving vision benefits may have been viewed or copied. EyeMed engaged a cybersecurity firm, reset passwords, and provided two years of free identity monitoring via Kroll.
EyeMed, a vision benefits administrator, disclosed a data breach where an unauthorized individual accessed an EyeMed email mailbox and sent phishing emails to contacts in the address book. Access occurred from June 24, 2020, to July 1, 2020. EyeMed discovered the incident on July 1, 2020, blocked access, and engaged a cybersecurity firm. Personal information of individuals receiving vision benefits may have been viewed or copied. EyeMed implemented password changes, security training, and provided two years of free identity monitoring via Kroll.