HackingCustomer Data InvolvedPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
KraftCPAs PLLC
bd_65934f8bd5eb4ea8 · schema v1 · pii pii-v1
Full breach record for KraftCPAs PLLC →KraftCPAs PLLC, a CPA firm, reported a network intrusion incident discovered on December 9, 2024. Unauthorized actors accessed files containing client PII, including names and likely government IDs. KraftCPAs engaged forensic investigators, contained the breach, and notified affected individuals, offering credit monitoring. The incident is currently contained.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_5e4922d134f521e7Maryland State AGfiled 2025-02-03Candidate
- bd_be46973d5118fc70Indiana State AGfiled 2025-02-03Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/kraftcpas-20250203.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 3, 2025
- Raw hash
- 3bf12623b4cffcf74c813bee69863b014580007c3a0438aef32daae41b909004
Reporting entity
- Name
- KraftCPAs PLLCnorm: kraftcpas
Victim entity
- Name
- KraftCPAs PLLCnorm: kraftcpas
Incident
- Discovered
- Dec 9, 2024
- Materiality determined
- —
- Notification sent
- Feb 3, 2025
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 8 weeks(56 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.