DisclosureLens
Social EngineeringTelecom & MediaInformationPhishingBECTargetedEmployee Data InvolvedGovernment IDFinancial accountEmploymentHighContained

Los Angeles Philharmonic Association

bd_028ce207da6a15b7 · schema v1 · pii pii-v1

Severity

High

Discovered

Feb 14, 2018

Filed

Feb 20, 2018

To disclose

6 days

Affected

2,362state residents only

Linked

2 filings

Confidence

66%
Full breach record for Los Angeles Philharmonic Association2 incidents on file

On February 14, 2018, the Los Angeles Philharmonic was the victim of a spear-phishing email attack where an individual spoofed the CFO's email address to request 2017 employee W-2 forms. The fraudulent request was fulfilled before detection. The incident affected 2,362 California residents (current and former employees). The organization provided credit monitoring, identity restoration services, and notified the FBI, IRS, and state tax authorities.

California clockDiscovered Feb 14, 2018Notified Feb 15, 20181d CA 60-day OK6 days discovery → filing

Incident timeline

discovery → filing · 6 days

Feb 14, 2018

Begins

Feb 14, 2018

Discovered

Feb 20, 2018

Filed

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
Massachusetts State AGFeb 20 · first
California State AGFeb 20 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.