IlliniCare Health Plan
Disclosed Aug 9, 20197 years ago3,517 affectedConfirmed
The covered entity (CE), IlliniCare Health Plan, Inc. (IlliniCare), reported that an employee inadvertently uploaded two files containing protected health information (PHI) to the Internet. The PHI involved included names, dates of birth, addresses, phone numbers, health insurance information, clinical information, medications prescribed, and other treatment information. IlliniCare notified HHS, affected individuals, and the media. In its mitigation efforts, the CE sanctioned the responsible employee, implemented additional administrative safeguards, and retrained its staff. OCR obtained assurances that IlliniCare implemented the corrective actions noted.
What is known
| People affected | 3,517 (as reported to HHS) |
|---|---|
| Disclosed | Aug 9, 2019 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Insurance · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): IlliniCare Health Plan (Health Plan, IL)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Aug 9, 2019 | 3,517 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.