Social EngineeringPhishingData ExfiltratedCustomer Data InvolvedPIIIDENTITY_BASICLowContained
Eichenbaum, Comer & Ratynets
bd_b118da49233dc3aa · schema v1 · pii pii-v1
Full breach record for Eichenbaum, Comer & Ratynets →Eichenbaum Comer & Ratynets AAC reported a phishing incident where an unauthorized party accessed one employee email account between October 4 and October 8, 2020. The breach was discovered on January 20, 2022, after forensic investigation revealed the account contained personal information of affected individuals. The firm secured the account, engaged external cybersecurity professionals, and offered one year of complimentary credit monitoring via Experian IdentityWorks.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-551061
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 17, 2022
- Raw hash
- 98ca792786ee06d8ae8755da878923c4ba7a1bb9319f3796300b2addda87def3
Reporting entity
- Name
- Eichenbaum, Comer & Ratynetsnorm: eichenbaum comer ratynets
- Domain
- ecraac.com
Victim entity
- Name
- Eichenbaum, Comer & Ratynetsnorm: eichenbaum comer ratynets
- Domain
- ecraac.com
Incident
- Discovered
- Jan 20, 2022
- Materiality determined
- Jan 20, 2022
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- External
- Initial access
- phishing_link
Compliance
- Time to disclose
- 28 days(28 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.