MalwareRansomwareData ExfiltratedData EncryptedRansom DemandedRansom PaidSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICLowContained
Perkins & Co.
bd_d8abad6eabb79ff8 · schema v1 · pii pii-v1
Full breach record for Perkins & Co. →Perkins & Co, an accounting firm, disclosed a ransomware attack on its third-party cloud vendor, Netgain. The incident occurred between November 8 and December 3, 2020. The attacker exfiltrated and encrypted files, demanding a ransom which Netgain paid. Affected data included names and variable personal information. Perkins notified the IRS, state authorities, and offered credit monitoring to affected individuals.
California clockDiscovered Dec 3, 2020 → Notified May 25, 2022538d ✗ CA 60-day late18 months discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_ea38731c50620c8eDelaware State AGfiled 2022-05-27Candidate
- bd_f2d5e0dbc45e8b31Oregon State AGfiled 2022-05-27Verified
- bd_ba5d30aabab3a141Delaware State AGfiled 2022-05-26(1d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-553857
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 27, 2022
- Raw hash
- f58a7a00a8bc1f2aaec943470a2c64f65bb6a7b724426a59fea891a26e98fb35
Reporting entity
- Name
- Perkins & Co.norm: perkins
- Domain
- perkinsaccounting.com
Victim entity
- Name
- Perkins & Co.norm: perkins
- Domain
- perkinsaccounting.com
Incident
- Discovered
- Dec 3, 2020
- Materiality determined
- —
- Notification sent
- May 25, 2022
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 ChannelT1195 Supply Chain Compromise
- Threat actor
- ExternalFinancial
- Regulator citations
- Reported this incident to the IRS and state tax authorities, as well as applicable state data privacy regulatory authorities
- Initial access
- supply_chain
Compliance
- Time to disclose
- 18 months(540 days from discovery to filing)
- Compliance flags
- CA 60-day late · 538d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Dec 3, 2020→ Notified: May 25, 2022538d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.