HackingStolen CredentialsCustomer Data InvolvedDelayed DiscoveryIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Theresa Gordon Tax Services
bd_eabfc1cb4743e9b3 · schema v1 · pii pii-v1
Full breach record for Theresa Gordon Tax Services →Theresa Gordon Tax Services, Inc. reported unauthorized access to its tax filing applications between May 21, 2023, and July 12, 2023. The incident potentially exposed clients' Social Security numbers and other personal information. The company coordinated with the IRS, obtained a new EFIN, and engaged cybersecurity professionals. Multi-factor authentication was enforced on tax application providers. Complimentary identity restoration services were offered to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-591556
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 12, 2024
- Raw hash
- e778cd997ce64f5927b6669bccd559e25a706c1b22596a82534b9cd4ffef8583
Reporting entity
- Name
- Theresa Gordon Tax Servicesnorm: theresa gordon tax
Victim entity
- Name
- Theresa Gordon Tax Servicesnorm: theresa gordon tax
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Sep 18, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Coordinated with the IRS
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.