HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedTargetedIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIALMediumContained
Friedman & Perry, CPA's
bd_fe84e726a9e70514 · schema v1 · pii pii-v1
Full breach record for Friedman & Perry, CPA's →DiPardo Eremic & Co. CPA's notified the NH Attorney General of a security incident discovered on October 10, 2018, where an unauthorized third party filed tax returns using client information. Approximately 2 NH residents were affected. The firm engaged forensic experts, cooperated with the IRS, reset credentials, and provided 12 months of credit monitoring via CyberScout.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed2 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/dipardo-20190228.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 28, 2019
- Raw hash
- dd0c0cce7e0208b9bff763fae170d38aa0b71e4dce1464efb7368d85f04e22b3
Reporting entity
- Name
- Wilson, Elser, Moskowitz, Edelman & Dicker LLPnorm: wilson elser moskowitz edelman dicker
Victim entity
- Name
- Friedman & Perry, CPA'snorm: friedman perry cpa s
- Domain
- dipardoeremic-cpas.com
- Industry
- professional_services
Incident
- Discovered
- Oct 10, 2018
- Materiality determined
- —
- Notification sent
- Feb 25, 2019
- Affected individuals
- 2
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney GeneralCooperating with the IRS
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 20 weeks(141 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.