[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f33z1krofu7gom":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":30,"seoTitle":31,"seoTitleEn":32,"seoDescription":31,"seoDescriptionEn":33,"logoUrl":34,"isVerified":4,"isSensitive":4,"isSpamList":35,"isMalware":35,"company":36},"6a70aa20033c4ea2b16049e7","Cierant2024","Cierant 2024 Data Breach","cierant-2024","cierant.com","2024-12-10T00:00:00.000Z","2026-08-03T14:48:00.603Z","Official Cierant notice, HHS OCR, and independent breach reporting","https:\u002F\u002Fwww.cierant.com\u002Fnotice-of-data-incident\u002F",[14,16],"https:\u002F\u002Focrportal.hhs.gov\u002Focr\u002Fbreach\u002Fbreach_report.jsf",232506,"known",null,"people","High",[23,24,25,26,27,28,29],"Names","Physical addresses","Dates of birth","Provider names","Medical information","Medical record numbers","Health insurance information","\u003Cp>\u003Cstrong>The 2024 Cierant data breach\u003C\u002Fstrong> resulted from exploitation of a vulnerability in the Cleo VLTrader file-transfer tool used by the company. Cierant detected the incident on December 10, 2024. The U.S. Department of Health and Human Services breach record reports 232,506 affected people.\u003C\u002Fp>\u003Cp>Cierant provides marketing software and communications services to organizations, including health plans. The incident may have allowed limited access to personal and health information processed on behalf of those plans.\u003C\u002Fp>\u003Ch2>How did the Cierant data breach happen?\u003C\u002Fh2>\u003Cp>Cierant's investigation found that an attacker exploited a vulnerability in the third-party Cleo VLTrader product to gain limited access to company systems. The company began an investigation with cybersecurity specialists after detecting the vulnerability on December 10.\u003C\u002Fp>\u003Cp>Independent incident reporting associates the attack with the CL0P ransomware group. Cierant's own notice confirms exploitation of the VLTrader vulnerability without naming the actor.\u003C\u002Fp>\u003Ch2>What information may have been affected?\u003C\u002Fh2>\u003Cp>The categories varied by person. Disclosed fields included names, addresses, dates of birth, provider names, treatment-related dates, and generic descriptions of services received.\u003C\u002Fp>\u003Cp>Medical record numbers, health-plan beneficiary numbers, claim numbers, plan-member account numbers, and premium information may also have been involved for some people. Not every category applied to every affected individual.\u003C\u002Fp>\u003Ch2>How many people were affected?\u003C\u002Fh2>\u003Cp>The HHS Office for Civil Rights incident record reports 232,506 affected individuals. This is the published affected-person total for the event.\u003C\u002Fp>\u003Ch2>What risks can this information create?\u003C\u002Fh2>\u003Cp>Identity, insurance, and health information can make targeted fraud messages more convincing. An unexpected communication containing an accurate claim number, provider name, or service date should still be verified through an independent official channel.\u003C\u002Fp>\u003Cp>Health-plan and medical-record identifiers can be used in attempted insurance or healthcare fraud. Affected people may benefit from reviewing insurance explanations and medical bills for unfamiliar activity.\u003C\u002Fp>\u003Ch2>How did Cierant respond?\u003C\u002Fh2>\u003Cp>Cierant said it worked with outside cybersecurity specialists to investigate the scope and with the relevant health plans to identify potentially affected people. Notification letters were sent and eligible recipients were offered monitoring services.\u003C\u002Fp>\u003Ch2>What should affected people do?\u003C\u002Fh2>\u003Cp>Notice recipients can regularly review health-insurance statements, medical bills, financial accounts, and credit reports. An unfamiliar healthcare claim or service entry should be reported directly to the insurer or provider.\u003C\u002Fp>\u003Cp>Before opening a link in a message claiming to concern the incident, recipients should verify the sender through Cierant's or the relevant health plan's official contact channel.\u003C\u002Fp>","","Cierant Data Breach (232.5 Thousand People Affected)","The Cierant data breach affected 232,506 people and may have exposed identity, health-plan, claim, and medical information.","\u002Fuploads\u002Flogo\u002Fcierant-official.png",false,{"name":37,"sector":38,"country":39,"website":40,"websiteArchiveUrl":31,"websiteStatus":31,"websiteCheckedAt":19},"Cierant Corporation","Business Services","United States","https:\u002F\u002Fwww.cierant.com\u002F"]