Social EngineeringPhishingBECTargetedEmployee Data InvolvedIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTEMPLOYMENTHighContained
Los Angeles Philharmonic Association
bd_028ce207da6a15b7 · schema v1 · pii pii-v1
Full breach record for Los Angeles Philharmonic Association →On February 14, 2018, the Los Angeles Philharmonic was the victim of a spear-phishing email attack where an individual spoofed the CFO's email address to request 2017 employee W-2 forms. The fraudulent request was fulfilled before detection. The incident affected 2,362 California residents (current and former employees). The organization provided credit monitoring, identity restoration services, and notified the FBI, IRS, and state tax authorities.
California clockDiscovered Feb 14, 2018 → Notified Feb 15, 20181d ✓ CA 60-day OK6 days discovery → filing
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed2,362 affectedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-133932
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 20, 2018
- Raw hash
- 91f497425fa1a1ca57b4035aee4a6addc060009f4084ac3516d65dfc2c2dd7b2
Reporting entity
- Name
- Los Angeles Philharmonic Associationnorm: los angeles philharmonic
Victim entity
- Name
- Los Angeles Philharmonic Associationnorm: los angeles philharmonic
Incident
- Discovered
- Feb 14, 2018
- Materiality determined
- —
- Notification sent
- Feb 15, 2018
- Affected individuals
- 2,362
- Data types
- IDENTITY_GOVERNMENTFINANCIAL_ACCOUNTEMPLOYMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified the IRSNotified state tax authoritiesNotified the FBI
- Initial access
- phishing_link
Compliance
- Time to disclose
- 6 days(6 days from discovery to filing)
- Compliance flags
- CA 60-day OK · 1d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Feb 14, 2018→ Notified: Feb 15, 20181d 60 days (analyst band, pre-2026 discoveries) CA 60-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.