An unauthorized user accessed an employee email account at Platt, Miller & Jacobs, CPAs, LLP in March 2026, exposing clients’ Social Security numbers, dates of birth, addresses, financial account information, and driver’s license or state ID numbers. The firm notified clients in September 2026 and is offering free identity monitoring through Kroll. Affected individuals should enroll in the monitoring service and place a credit freeze right away.
| Company | Platt, Miller & Jacobs, CPAs, LLP |
|---|---|
| Industry | Finance |
| Data Types Exposed | Dates of Birth, Social Security Numbers, Home Addresses, Financial Account Information, Driver’s License Numbers, State Identification Numbers |
| People Affected | Not Publicly Disclosed |
| Attack Method | Email Account Compromise |
| Regulators Notified | Not Publicly Disclosed |
Were you affected by this breach?
You may be owed compensation.
Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.
Check if you qualify — free reviewWhat Happened in the Platt, Miller & Jacobs, CPAs, LLP Data Breach?
Platt, Miller & Jacobs, CPAs, LLP has told clients that someone outside the firm broke into an employee’s Microsoft Outlook email account. The Platt, Miller & Jacobs data breach exposed personal and financial details that clients had shared with the firm over the years. As an accounting practice, the firm routinely handles tax records, bank information, and identification documents, which makes this kind of intrusion especially sensitive.
According to the firm’s notice, the unauthorized access happened on March 10, 2026, and staff discovered it the next day. Unauthorized access to its network occurred in March 2026, and the intruder reportedly used the hijacked mailbox to send phishing messages to some of the firm’s clients. The notice states that the intruder did not reach the firm’s tax return systems or its broader file storage. However, the compromised inbox itself held enough stored client information to create real exposure.
After discovering the intrusion, the firm brought in outside digital forensics specialists to look into what happened. That investigation has since wrapped up. As a result, the firm determined that sensitive client information was accessible to the unauthorized user during the time the account was compromised. The firm also says it reported the incident to the FBI, the IRS, and the Secret Service, and that none of those agencies asked it to delay notifying clients.
Who was affected?
The people affected by this incident are clients of Platt, Miller & Jacobs, CPAs, LLP who had personal or financial information stored in, or passing through, the compromised email account. Because accounting relationships often span years, the exposed data may include records tied to older tax filings as well as more recent correspondence. The firm has not disclosed exactly how many clients fall into this group.
The notice does not state a specific number of affected individuals, so that figure has not been publicly disclosed. In addition, the letter does not say how long the intruder had access to the account beyond the initial discovery window. Because the firm serves individual taxpayers, the affected population is likely limited to people who directly engaged the firm for accounting or tax preparation work, rather than a broader public audience.
It is worth noting the gap between discovery and notification. The firm discovered the issue in March 2026 but did not send notices until late September 2026. This roughly six-and-a-half-month span reflects, according to the firm, the time needed to determine exactly whose data was contained in the account.
What Information Was Potentially Exposed?
The firm’s notice outlines a fairly broad set of data categories that may have been accessible to the unauthorized user. This is common for email-based breaches at accounting firms, since inboxes often accumulate years of attachments containing identity and financial documents.
- Dates of birth
- Social Security numbers
- Home addresses
- Financial account information
- Driver’s license numbers
- State identification numbers
This combination of data is particularly valuable to identity thieves. A name paired with a Social Security number and date of birth is often enough to open new credit accounts or apply for loans in someone else’s name. Because tax-related documents may have also been present, there is a risk that stolen details could be used to file fraudulent tax returns or craft convincing follow-up phishing attempts.
Financial account information adds another layer of risk. If account numbers or related banking details were exposed, affected clients could face unauthorized transactions or attempts to redirect funds. Meanwhile, driver’s license and state ID numbers can be used to create fake identification, which criminals sometimes use to open accounts or pass identity checks in someone else’s name.
What is the company doing?
After discovering the unauthorized access, the firm hired third-party IT specialists to investigate the scope of the intrusion. That work has since concluded, and the firm says it found no evidence that the exposed data has actually been misused. Even so, the firm chose to notify affected clients out of caution once its review was complete.
In response to the incident, the firm says it has added new security measures, increased staff training, and tightened restrictions on who can access its internal systems. The firm is also offering 18 months of complimentary identity monitoring through Kroll, which includes credit monitoring, fraud consultation support, and identity theft restoration assistance. A copy of the notice letter was filed with Massachusetts state authorities, which is standard practice for breach notifications affecting residents of that state.
The notice does not specify how the intruder initially gained access to the employee’s email account. It also does not state exactly how long that access lasted before it was cut off. Because of these gaps, some details about the full scope of the incident remain unclear to the public.
What Should Affected Individuals Do?
Monitor Your Credit Reports Closely
Anyone who received a notice from Platt, Miller & Jacobs should pull their credit reports from all three major bureaus. You can request free reports through annualcreditreport.com, and reviewing them regularly helps catch new accounts opened in your name. Look specifically for unfamiliar inquiries, new credit lines, or accounts you don’t recognize.
Because Social Security numbers were involved, this step matters more than usual. Identity thieves often wait months before using stolen data, so a single check right after notification is not enough. Instead, set a recurring reminder to review your reports every few months for at least the next year.
Consider a Credit Freeze or Fraud Alert
Given that Social Security numbers, financial account details, and government ID numbers were potentially exposed, placing a security freeze is a strong protective step. A freeze restricts access to your credit file, which makes it harder for criminals to open new accounts using your identity. You can place a free freeze with Equifax, Experian, and TransUnion individually.
Alternatively, a fraud alert requires lenders to verify your identity before extending new credit. This option is less restrictive than a freeze but still adds a meaningful layer of protection. Either way, acting sooner rather than later reduces the window of opportunity for anyone attempting to misuse your information.
Enroll in the Offered Identity Monitoring Service
The firm is providing 18 months of free identity monitoring through Kroll, including credit monitoring and identity theft restoration support. If you received a notice letter, it should include a membership number needed to enroll. Because there is typically a deadline to sign up, it’s worth doing this promptly rather than setting the letter aside.
This kind of service can alert you quickly if someone tries to use your information fraudulently. In addition, the restoration support can help you navigate the recovery process if fraud does occur. Even if you feel confident nothing has happened yet, enrolling costs nothing and adds a useful safety net.
Protect Against Tax Fraud and Phishing Attempts
Because this breach involved an accounting firm, there is a heightened risk of tax-related identity fraud. Consider requesting an Identity Protection PIN from the IRS, which helps prevent someone else from filing a fraudulent return using your Social Security number. This step is especially relevant given the firm’s role in tax preparation.
Also, stay alert for phishing emails that may appear to come from the firm itself, since the attacker reportedly used the compromised account to send messages to clients. Avoid clicking links or opening attachments in unexpected emails, even if they look legitimate. When in doubt, contact the firm directly using a phone number you already know, rather than one listed in a suspicious message.
Get a Free Case Review
Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.
