Clustered 6 filings across 6 jurisdictions · filing window Mar 27, 2026 → Mar 30, 2026. View entity profile → Other incidents for this victim →
incident inc_415363d06401472c · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
PII · Government ID
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
CA IN ME NH TX VT
all State AG
per-filing reported counts
State AGs report only their own residents; bars show per-filing counts.
Earliest sighting first · deep chronology in Litigation Timeline
Jul 5, 2024 → Dec 20, 2025
When the intrusion reportedly occurred, per the linked filings
Dec 1, 2025
Reported by MAINE AG, NEW HAMPSHIRE AG, CALIFORNIA AG, VERMONT AG filings
Mar 10, 2026
Reported by TEXAS AG filing
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
The Oklahoma Tax Commission (OTC) identified unauthorized access to certain W-2 and 1099 files within its Oklahoma Taxpayer Access Point (OkTAP) system between July 5, 2024 and December 20, 2025. The breach was discovered in December 2025. Affected data includes names and Social Security numbers. Fourteen Maine residents were notified on March 27, 2026. The OTC implemented additional system safeguards and is offering 12-month credit monitoring via Cyberscout/TransUnion.
Affected (this filing): 14
Oklahoma Tax Commission notified New Hampshire AG of unauthorized access to OkTAP system between July 5, 2024 and Dec 20, 2025. 18 NH residents affected; data included names and SSNs. Discovered Dec 2025. Notifications sent March 27, 2026. Response included forensic investigation, IRS cooperation, system safeguards, and 12-month credit monitoring.
Affected (this filing): 18
The Oklahoma Tax Commission (OTC) notified individuals that unauthorized access occurred to W-2 and 1099 files in the OkTAP system between July 5, 2024, and December 20, 2025. The OTC learned of suspicious activity in December 2025. Affected data includes names and Social Security numbers. The OTC engaged third-party forensic specialists, cooperated with the IRS, and implemented additional safeguards. Credit monitoring is offered.
Oklahoma Tax Commission reported a data breach to the Indiana Attorney General. The breach occurred on 2024-07-05 and was reported on 2026-03-27. 126 Indiana residents were affected.
Affected (this filing): 126
The Oklahoma Tax Commission (OTC) disclosed a data breach affecting its OkTAP system. Unauthorized access occurred between September 18, 2025, and December 20, 2025, exposing names and Social Security numbers from W-2 and 1099 files. The OTC notified 10 Vermont residents on March 27, 2026, offering 12 months of credit monitoring. The incident is contained, with additional safeguards implemented.
Affected (this filing): 10
Oklahoma Tax Commission based in Oklahoma City, Oklahoma, a governmental entity entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-03-10 and reported on 2026-03-30. 4,177 Texas residents were affected. 160,830 individuals affected in total. Types of information involved: Name of individual;Social Security Number Information. Consumers were notified via U.S. Mail.
Affected (this filing): 4,177