HackingStolen CredentialsCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Moss Adams LLP
bd_62dee1c866be38a8 · schema v1 · pii pii-v1
Full breach record for Moss Adams LLP →Moss Adams LLP reported a data breach affecting a single employee's email account. An unauthorized third party accessed the account, which contained names and Social Security numbers of individuals for whom Moss Adams performed employee benefit plan audits. The breach was detected on October 10, 2019. Moss Adams secured the account, investigated, and offered one year of complimentary credit monitoring via TransUnion.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-187747
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 26, 2020
- Raw hash
- dbde0ef3f256ff3e951aaa13c2b57619c631d63ccb0a7cef15cbe0665562b285
Reporting entity
- Name
- Moss Adams LLPnorm: moss adams
Victim entity
- Name
- Moss Adams LLPnorm: moss adams
Incident
- Discovered
- Oct 10, 2019
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 20 weeks(139 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.