HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICLowContained
Comyns, Smith, McCleary & Deaver LLP
bd_e5c6e5d5eae611b2 · schema v1 · pii pii-v1
Full breach record for Comyns, Smith, McCleary & Deaver LLP →Comyns, Smith, McCleary & Deaver LLP (CSMD) detected unauthorized access to one email account on November 14, 2024. The breach date listed by the CA AG is September 30, 2024. The incident involved potential exposure of personal information including names and other variable data. CSMD secured the account, engaged forensic investigators, changed credentials, and offered credit monitoring services to affected individuals.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_6a1031c4c94f109bIndiana State AGfiled 2025-06-10Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-603836
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 10, 2025
- Raw hash
- b053ecb83cee5954538285db53a3327e4f387e3fc08fcfcf7ff917e73e0670fa
Reporting entity
- Name
- Comyns, Smith, McCleary & Deaver LLPnorm: comyns smith mccleary deaver
- Domain
- csmllp.com
Victim entity
- Name
- Comyns, Smith, McCleary & Deaver LLPnorm: comyns smith mccleary deaver
- Domain
- csmllp.com
Incident
- Discovered
- Nov 14, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
Compliance
- Time to disclose
- 30 weeks(208 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.