Harvard Pilgrim to Pay $16 Million to End Ransomware Lawsuits

Feb. 28, 2025, 4:04 PM UTC

Health-care provider Harvard Pilgrim Health Care Inc. and its parent company Point32Health Inc. will pay $16 million to settle claims they exposed the medical information of nearly 3 million individuals in a 2023 ransomware attack.

The providers’ systems were breached in spring 2023 exposing personal information including names, dates of birth, identification numbers, health insurance account information, and clinical information such as medical history, diagnoses, and treatments, according to the motion seeking preliminary approval of settlement terms filed Feb. 26 in the US District Court for the District of Massachusetts.

Members of the Massachusetts-based insurance company quickly sued the providers ...

Learn more about Bloomberg Law or Log In to keep reading:

Learn About Bloomberg Law

AI-powered legal analytics, workflow tools and premium legal & business news.

Already a subscriber?

Log in to keep reading or access research tools.