Ceirant Corp., a Danbury-based software company, reported to the federal government that a data breach may have affected the personal information of more than 232,500 people.
Already a Subscriber? Log in
Get Instant Access to This Article
Subscribe to Hartford Business Journal and get immediate access to all of our subscriber-only content and much more.
- Critical Hartford and Connecticut business news updated daily.
- Immediate access to all subscriber-only content on our website.
- Bi-weekly print or digital editions of our award-winning publication.
- Special bonus issues like the Hartford Book of Lists.
- Exclusive ticket prize draws for our in-person events.
Click here to purchase a paywall bypass link for this article.
Ceirant Corp., a Danbury-based software company, reported to the federal government that a data breach may have affected the personal information of more than 232,500 people.
The breach was reported to the U.S. Department of Health and Human Services
Office for Civil Rights, which maintains an online list of breaches of unsecured protected health information affecting 500 or more people.
According to a data incident report posted on its website, the company “was impacted by the vulnerability to third-party transfer tool VLTrader.” Cierant said it detected the vulnerability on Dec. 10, 2024, and “promptly began an investigation with assistance from an industry-leading cybersecurity team.”
The investigation determined that “an unauthorized actor exploited the third-party vulnerability to gain limited access to Cierant systems that may have compromised personal or health data,” Cierant said.
The personal data was processed by Cierant on behalf of third-party health plans, it said, adding it notified and then worked with the health plans to identify and notify potentially affected individuals.
According to information posted on the federal data breach website, 232,506 people were potentially affected by the breach. The types of personal information that may have been involved varies by person, and can include name, address, date of birth, treatment-related dates, a generic description of services received, provider name, medical record number, health plan beneficiary number, claims number, and/or plan member account number, premium information.
“There is no indication that this information has been or will be misused at this time,” Cierant said, adding that notification letters have been mailed to all those potentially affected by the breach. The letters also provide a toll-free number for a dedicated hotline that can provide additional information for those affected. The hotline number is (877) 841-3066, and it is available Monday through Friday from 9 a.m. to 9 p.m.
On its website, Cierant describes itself as a distributed marketing software and services company that helps businesses deploy customized marketing communications across physical and digital channels. It is based at 34 Executive Drive in Danbury.
