Skip to content

Insulet

Disclosed Oct 17, 20178 years ago1,469 affectedConfirmed

Official notice

On August 18, 2017, a business associate (BA), Brainshark Inc., had a technical error that caused 3,732 email addresses of the covered entity's (CE) customers to be seen by other customers. The CE contacted the BA and the entities worked together to deactivate the training module that caused the error and investigate the incident. Upon notice of the technical error, Brainshark disabled the CE's site and all further access to the presentation that was involved in the breach. The CE provided breach notification to HHS and the affected individuals. OCR obtained assurances that the CE implemented the corrective actions noted above. In addition, the CE terminated its contract with the BA.

What is known

People affected1,469 (as reported to HHS)
DisclosedOct 17, 2017
AttackInsider
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
HHS OCR breach report (archive, resolved): Insulet (Healthcare Provider, MA)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalOct 17, 20171,469

Other breaches at Insulet

BreachAffected
Disclosed May 16, 2025May 16, 20251 year agoInsider841
Disclosed Jan 5, 2023Jan 5, 20233 years agoInsider29K
Disclosed Mar 19, 2021Mar 19, 20215 years agoHacking9,050
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Insulet

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.