HackingStolen CredentialsCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICMediumContained
Calibre CPA Group
bd_469bb67cd6efc5df · schema v1 · pii pii-v1
Full breach record for Calibre CPA Group →Calibre CPA Group experienced unauthorized access to employee email accounts and a server between March 11, 2019, and May 7, 2019. The incident affected 553 California residents, exposing personal information including names, Social Security numbers, financial account details, driver's license numbers, and medical information. Calibre engaged forensic experts, reset passwords, implemented dual-factor authentication, and provided two years of identity monitoring services through Kroll. The investigation is ongoing, but the incident is considered contained.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_fda5cc6a136f7ac9Montana State AGfiled 2019-08-26(14d gap)Candidate
- bd_b7b0c8592bb421c4HHS OCRfiled 2019-09-27(18d gap)Verified
- bd_66ae17adab8607d6Washington State AGfiled 2019-10-10(31d gap)Verified by operator
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-150374
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 9, 2019
- Raw hash
- 62929b540039059ebde2d7797998f9e53f514dd44e824fa03711af5bbf29fe18
Reporting entity
- Name
- Calibre CPA Groupnorm: calibre cpa
Victim entity
- Name
- Calibre CPA Groupnorm: calibre cpa
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Sep 9, 2019
- Affected individuals
- 553
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Provided relevant regulatory notices
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.