Supply chain ⛓ Supply Chain

University of Colorado Hospital Authority Third-Party Breach (January 2023)

📅 2023-01-01 🏢 Diligent Corporation
Primary Source ↗

Incident Details

University of Colorado Hospital Authority Announces Third-Party Data Breach Following Incident at Diligent Corporation | JD Supra. On January 17, 2023, the University of Colorado Hospital Authority (“UCHealth”) filed notice of a data breach with the U.S. Department of Health and. If you are among the 48,879 individuals who received a data breach letter from UCHealth, it means that your sensitive information was leaked in the recent Diligent Corp. data breach. As we’ve discussed in prior posts , cybercriminals routinely target healthcare providers and related companies in hopes of obtaining information they can use to commit identity theft and other frauds. Thus, as a result of the UCHealth / Diligent data breach, you are now at a significantly increased risk of being the target of identity theft or other frauds. Third-party company: Diligent Corporation.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Diligent Corporation
Supply Chain Attack
✅ Confirmed third-party / vendor compromise

Timeline

  1. 2023-01-01 Breach occurred
  2. 2023-01-01 Publicly disclosed