DisclosureLens
HackingIdentity (basic)Government IDFinancial accountMediumContained

KRT CPAs, P.C.

bd_867b26d3c7796077 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Apr 10, 2016

Filed

Jul 16, 2016

To disclose

14 weeks

Affected

182state residents only

Linked

2 filings

Confidence

66%
Full breach record for KRT CPAs, P.C.

KRT CPAs, P.C. notified individuals that its computer system was compromised on April 10, 2016, by an outside attacker gaining access to tax software. The attacker accessed personal information including names, addresses, SSNs, and potentially bank account numbers. KRT reset passwords, implemented VPN and authentication procedures, retained forensic specialists, and reported to the IRS Criminal Investigation Division. Affected individuals were offered one year of Equifax Credit Watch Gold identity theft protection.

Incident timeline

discovery → filing · 14 weeks / 97 days

Apr 10, 2016

Discovered

Jul 16, 2016

Filed

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
Massachusetts State AGJul 13 · first
South Carolina State AG+3d · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.