type: incident ยท created: 2026-08-18 ยท updated: 2026-08-18 ยท tags: [] ยท confidence: not-rated ยท affected_sectors: [] ยท au_impact: false
Clover Health Social Engineering Incident
| Field | Value |
|---|---|
| Type | Incident โ Social Engineering / Data Breach |
| Date | 2026-07-22 |
| Status | Under Investigation |
| Sources | HIPAA Journal |
Summary
Clover Health Investments notified the SEC about a cybersecurity incident first identified in July 2026. The Medicare Advantage insurer is assessing the scope of data exposed through a social engineering attack targeting employees.
Key Details
- Social engineering attack compromised internal systems
- SEC notification filed by the company
- Impact assessment ongoing โ scope of data exposure not yet determined
Significance
Demonstrates ongoing effectiveness of social engineering attacks against healthcare organisations despite increased awareness. The SEC notification requirement under new cybersecurity rules ensures public disclosure.
Related Pages
Sources: HIPAA Journal (2026-07-22)