Health insurance tech provider TriZetto says more than 3 million impacted by 2024 breach
好的,我现在需要帮用户总结一篇文章的内容,控制在100字以内。首先,我得仔细阅读文章,抓住关键信息。文章讲的是2024年TriZetto公司的数据泄露事件,影响了数百万美国人,泄露了社保号、地址等敏感信息。 接下来,我需要确定用户的需求。用户要求用中文总结,不需要特定的开头,直接描述内容。所以我要简洁明了地表达主要点:事件的时间、公司名称、泄露的数据类型、受影响的人数以及后续措施。 然后,我要注意字数限制,确保不超过100字。可能需要合并一些信息,比如多个州的情况可以概括为“多个州”。同时,提到TriZetto是Cognizant的子公司,并且受害者获得了信用监控服务。 最后,检查语言是否流畅自然,避免使用过于专业的术语。确保所有关键点都涵盖在内:数据泄露的时间、公司、受影响人数、泄露的数据类型、涉及的州以及应对措施。 </think> 2024年TriZetto数据泄露事件影响数百万美国人,泄露包括社保号和地址等敏感信息。公司于10月发现 breach始于11月,已通知多个州相关部门并提供信用监控服务。 2026-2-25 18:46:1 Author: therecord.media(查看原文) 阅读量:4 收藏

Millions of people across the U.S. had sensitive information leaked as a result of a 2024 data breach impacting healthcare technology company TriZetto Provider Solutions.

The company — which creates software to manage health insurance claims, enrollment and payments, handling more than four billion transactions annually — updated the size of the breach this week. 

Last month, several county governments in Oregon warned that thousands of residents were impacted by the breach at TriZetto, which provides insurance-eligibility verification services to public and private healthcare providers in the region. 

County officials said the company discovered the breach in October and found that it started in November 2024. A hacker used a web portal to access historical eligibility reports stored in TriZetto’s system. 

The Oregon counties said more than 700,000 people had sensitive healthcare data leaked, including Social Security numbers, addresses, health insurance numbers and more. TriZetto did not release any public comment about the incident.  

This week, TriZetto updated that figure, reporting to Oregon’s Department of Justice that 3,433,965 people were affected by the breach. 

The company also filed breach notifications in New Hampshire, California, South Carolina, Massachusetts, Vermont and Texas. Of those states, only Texas and South Carolina report the number of victims impacted. Texas said 171,158 people had data leaked and South Carolina said 3,562 were affected. 

Some private medical providers in Oklahoma and other states also confirmed that they were affected by the breach. 

TriZetto did not respond to requests for comment confirming the total number of victims. The company is a subsidiary of IT giant Cognizant, which also did not respond to requests for comment. 

The sample breach notification letters filed in each state are nearly identical and confirm that law enforcement was contacted after the breach was discovered in October. The company hired Google-owned incident response firm Mandiant to conduct an investigation. 

“[TriZetto] determined that, beginning in November 2024, an unauthorized actor began accessing some records related to insurance eligibility verification transactions that healthcare providers process to assess insurance coverage for treatment services they provide to patients,” the letters said..

The company began notifying customers in December. TriZetto noted that for several of its customers, it was asked to file breach notifications on their behalf with the U.S. Department of Health and Human Services’ Office for Civil Rights as well as with state agencies. 

Victims are being given access to credit monitoring services for one year. 

Cognizant was sued last year by industrial manufacturing giant Clorox over accusations its help desk was responsible for a 2023 cyberattack that cost hundreds of millions.

Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.

Recorded Future

No previous article

No new articles

Jonathan Greig

Jonathan Greig

is a Breaking News Reporter at Recorded Future News. Jonathan has worked across the globe as a journalist since 2014. Before moving back to New York City, he worked for news outlets in South Africa, Jordan and Cambodia. He previously covered cybersecurity at ZDNet and TechRepublic.


文章来源: https://therecord.media/trizetto-healthcare-tech-company-data-breach-update
如有侵权请联系:admin#unsafe.sh