Calibre CPA Group
ent_16baac7c660ef43f14f1a76b
Disclosures
7
State AG · HHS OCR · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
7,937
nationwide · HHS OCR MD
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Calibre CPA Group
- Normalized
- calibre cpa— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- New Hampshire State AGas victim2020-01-21
Calibre CPA Group filed a supplemental notice with the New Hampshire Attorney General regarding a data security incident. Unauthorized access to employee email accounts and a server occurred between March 11, 2019, and May 7, 2019. The supplemental notice identifies 66 impacted New Hampshire residents (up from 3 in the initial notice). PII including names and government IDs was potentially accessed. Calibre engaged Kroll for credit monitoring and notified law enforcement.
- Washington State AGas victim2019-10-10
Supplemental notice for Calibre CPA Group regarding unauthorized access to employee email accounts and a server between March 11 and May 7, 2019. Incident discovered April 16, 2019. 983 Washington residents affected, including names, SSNs, and financial account info. Notices sent starting August 26, 2019. Remediation included MFA and forensic review.
- MARYLANDHHS OCRas victim2019-09-27
Calibre CPA Group reported to HHS on 2019-09-27 a Hacking/IT Incident affecting 7,937 individuals. Breached information located on Email, Network Server. Employees were victims of an email phishing scheme exposing PHI including names and Social Security numbers.
- New Hampshire State AGas victim2019-09-10
Calibre CPA Group notified the NH Attorney General of unauthorized access to employee email accounts and a server between March 11, 2019, and May 7, 2019. The incident potentially affected 3 New Hampshire residents, exposing names and Social Security numbers. Calibre engaged forensic experts, reset passwords, and offered two years of identity monitoring. The investigation was ongoing at the time of notification.
- California State AGas victim2019-09-09
Calibre CPA Group experienced unauthorized access to employee email accounts and a server between March 11, 2019, and May 7, 2019. The incident affected 553 California residents, exposing personal information including names, Social Security numbers, financial account details, driver's license numbers, and medical information. Calibre engaged forensic experts, reset passwords, implemented dual-factor authentication, and provided two years of identity monitoring services through Kroll. The investigation is ongoing, but the incident is considered contained.
- Massachusetts State AGas victim2019-08-26
Calibre CPA Group reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-08-26. 909 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2019-08-26
Calibre CPA Group notified Montana and other state residents of unauthorized access to employee email accounts and a server between March 11 and May 7, 2019. The incident involved the use of stolen credentials to access email and server data containing personal information (PII) and government IDs. Calibre engaged forensic experts, notified law enforcement, and provided two years of Kroll identity monitoring services.