HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Citrin Cooperman Advisors LLC
bd_4c9e68aa52b33715 · schema v1 · pii pii-v1
Full breach record for Citrin Cooperman Advisors LLC →Citrin Cooperman Advisors LLC notified consumers of a cyberattack involving unauthorized access to its IT network and data exfiltration. The incident, discovered on November 7, 2023, may have exposed names, Social Security numbers, and financial account numbers. The firm engaged third-party specialists, notified law enforcement, and is offering two years of complimentary credit and identity monitoring services.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_1079f6e639bf14edMontana State AGfiled 2023-12-06(30d gap)Candidate
- bd_3b2b271a294a1814Indiana State AGfiled 2023-12-06(30d gap)Verified
- bd_361769a80c71699eMaine State AGfiled 2023-12-25(49d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-11-06-citrin-cooperman-advisors-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 6, 2023
- Raw hash
- a5163df6d38c30c93a0fc97520ba9ab91d0041972509c5e7537f30e7c08f9ce0
Reporting entity
- Name
- Citrin Cooperman Advisors LLCnorm: citrin cooperman advisors
Victim entity
- Name
- Citrin Cooperman Advisors LLCnorm: citrin cooperman advisors
Incident
- Discovered
- Nov 7, 2023
- Materiality determined
- —
- Notification sent
- Nov 6, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 ChannelT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- notified certain law enforcement and governmental authorities
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.