Menu
Browse

Cyber Incident Victim: Optima Tax Relief

Date:

Nov 2022

Location:

United States of America

Summary

Optima Tax Relief experienced a cyberattack resulting in unauthorized access to its network and sensitive customer information. The compromised data included names, mailing addresses, dates of birth, and Social Security numbers. Following the breach discovery, the company secured its systems, initiated an investigation with external IT experts, and confirmed the exposure of confidential consumer files. Affected individuals were subsequently notified about the incident and the specific personal details involved in the compromise. The tax resolution services provider undertook these measures to address the security event impacting its client data.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

In November 2022, Optima Tax Relief, LLC detected a cyberattack impacting its computer network. The Santa Ana-based tax resolution services provider immediately secured its systems and engaged an external IT firm to investigate the incident. Forensic analysis confirmed unauthorized access to files containing sensitive consumer information. The compromised data included names, mailing addresses, dates of birth, and Social Security numbers—critical identifiers exposing affected individuals to potential identity theft and financial fraud. Optima conducted a comprehensive review of accessed files to identify impacted customers and determine the specific data elements exposed per individual. The company completed this assessment several months after the initial intrusion discovery, verifying the scope of compromised records.

Cyber Incident Image

On May 2, 2023, Optima formally reported the breach to the Montana Attorney General’s office and initiated notification letters to affected customers. The six-month gap between intrusion detection and public disclosure reflects the duration required for investigation and victim identification processes. As a firm specializing in IRS negotiations and tax debt resolution, Optima routinely handles highly sensitive financial data across its 711-employee operation. The breach exposed systemic vulnerabilities in protecting client information, though specific technical details about attack vectors or network security shortcomings remain undisclosed. No ransomware payments or data deletion claims were reported, suggesting a conventional data exfiltration incident rather than extortion-focused ransomware. The company’s $93 million annual revenue and national client base indicate substantial operational scale, amplifying potential liability risks from the exposure of taxpayer information entrusted for resolution services.

Sources
Sources available to members
1 source