Ives Sultan & Spike CPAs
bd_259fa8f74e26c829 · schema v1 · pii pii-v1
Full breach record for Ives Sultan & Spike CPAs →Ives Sultan & Spike CPAs, a financial services company, reported an email phishing incident that occurred on May 12, 2020. The breach was discovered in October 2020 and affected 6 Maine residents. The compromised data included names and Social Security Numbers. Affected individuals were notified on September 16, 2021, and offered 12 months of identity theft protection services through TransUnion.
J jump to incidentP pin to compareR raw source
Incident timeline
May 12, 2020
Begins
Oct 1, 2020
Discovered
Sep 16, 2021
Filed
vs. sector median
+42 wks slower
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Massachusetts State AGbd_19d163b0e065f5d12021-09-16Verified
- Montana State AGbd_20bc1895c8eb3bb62021-09-16Candidate
- Maine State AGbd_729954edd64462432021-09-16Verified by operator
- Indiana State AGbd_bf0bfb916450d6642021-09-16Verified
Show 1 more filing ↓Show fewer ↑up to 5d gap
- New Hampshire State AGbd_61d5dff879b01c6a2021-09-21 · +5dVerified
Filing propagation · 6 filings · 5 states
View merged incident ↗Pattern: first filing Sep 16 (MA), last Sep 21 (NH) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.