[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f3suyrtxhy8i5a":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":18,"affectedCount":18,"affectedCountStatus":19,"affectedCountLowerBound":20,"affectedCountUnit":21,"hasEnglishDescription":4,"severity":22,"dataClasses":23,"description":26,"seoTitle":27,"seoTitleEn":28,"seoDescription":27,"seoDescriptionEn":29,"logoUrl":30,"isVerified":4,"isSensitive":4,"isSpamList":31,"isMalware":31,"company":32},"6a71af8b57108841b578e314","OklahomaTaxCommission2024","Oklahoma Tax Commission Data Breach","oklahoma-tax-commission-2024","oklahoma.gov","2024-07-05T00:00:00.000Z","2026-08-04T09:23:23.289Z","Archived Maine Attorney General breach record and Oklahoma Tax Commission consumer notice","https:\u002F\u002Fweb.archive.org\u002Fweb\u002F20260402110746id_\u002Fhttps:\u002F\u002Fwww.maine.gov\u002Fagviewer\u002Fcontent\u002Fag\u002F985235c7-cb95-4be2-8792-a1252b4f8318\u002F0eb11ddd-824a-4bf9-8183-390f8c936c5a.html",[14,16,17],"https:\u002F\u002Foag.my.site.com\u002Fdatasecuritybreachreport\u002Fapex\u002FDataSecurityReportsPage","https:\u002F\u002Fkfor.com\u002Fnews\u002Flocal\u002Fok-tax-commission-at-center-of-massive-data-breach\u002F",160830,"known",null,"people","High",[24,25],"Names","Social security numbers","\u003Cp>\u003Cstrong>The Oklahoma Tax Commission data breach\u003C\u002Fstrong> was a security incident involving unauthorised access to certain W-2 and 1099 files in the Oklahoma Taxpayer Access Point (OkTAP) system. Official regulator records place the access between 5 July 2024 and 20 December 2025.\u003C\u002Fp>\u003Cp>The Texas Attorney General record reports that the incident affected 160,830 people across the United States, including 4,177 Texas residents. A Maine Attorney General record and the Oklahoma Tax Commission's consumer letter confirm the same OkTAP event.\u003C\u002Fp>\u003Ch2>How was the incident confirmed?\u003C\u002Fh2>\u003Cp>The archived Maine Attorney General record identifies the entity as the Oklahoma Tax Commission, lists the same access interval and records consumer notification on 27 March 2026.\u003C\u002Fp>\u003Cp>The company letter says the investigation found unauthorised access to W-2 and 1099 files. The Texas record independently identifies the same organisation, matching start and end dates, the affected-person total and the data classes.\u003C\u002Fp>\u003Ch2>When did the breach occur?\u003C\u002Fh2>\u003Cp>The known period of unauthorised access was 5 July 2024 through 20 December 2025. The catalog event date is the beginning of that period; the long access interval should not be confused with the notification or publication date.\u003C\u002Fp>\u003Cp>OTC said it learned of suspicious activity in the OkTAP system in December 2025. The Maine regulator record lists 10 March 2026 as the formal discovery date and says written notification began on 27 March.\u003C\u002Fp>\u003Ch2>What information was affected?\u003C\u002Fh2>\u003Cp>OTC's notification letter confirms that names and Social Security numbers were present in the affected W-2 and 1099 files. The Texas Attorney General lists the same two data categories.\u003C\u002Fp>\u003Cp>Tax documents can contain other fields, but salary, address and employer details were not added because the official notices do not explicitly confirm those categories as affected.\u003C\u002Fp>\u003Ch2>How many people were affected?\u003C\u002Fh2>\u003Cp>The Texas Attorney General reports a total of 160,830 affected people. The same record separately identifies 4,177 Texas residents within that total.\u003C\u002Fp>\u003Cp>OTC initially said it could not disclose the total; the subsequently published Texas regulator record supplies the exact nationwide figure. The 14 Maine residents are a state subset within that total.\u003C\u002Fp>\u003Ch2>What risks do these data types create?\u003C\u002Fh2>\u003Cp>A name combined with a Social Security number creates persistent risk of fraudulent credit applications, identity-verification abuse and false tax-return filings.\u003C\u002Fp>\u003Cp>Targeted messages claiming to concern a tax refund, OkTAP or the IRS may appear authentic. Knowledge of a person's tax status or accurate personal details does not prove that the sender represents a government agency.\u003C\u002Fp>\u003Ch2>What should affected people do?\u003C\u002Fh2>\u003Cp>OTC offered eligible notice recipients 12 months of credit monitoring and fraud assistance through Cyberscout. Enrollment codes and deadlines should be checked only against the recipient's official notification letter.\u003C\u002Fp>\u003Cp>Recipients can review credit reports and tax accounts for unfamiliar activity. An IRS Identity Protection PIN may help reduce false-return risk; official Oklahoma and IRS websites should be used instead of links in unexpected messages.\u003C\u002Fp>","","Oklahoma Tax Commission Data Breach (160.8 Thousand People Affected)","Review the verified Oklahoma Tax Commission breach dates, the 160,830 people affected, the information involved and practical protective steps.","https:\u002F\u002Fwww.oklahoma.gov\u002Fcontent\u002Fexperience-fragments\u002Fsok-tax\u002Fus\u002Fen\u002Fsite\u002Fheader\u002Fmaster\u002F_jcr_content\u002Froot\u002Fresponsivegrid\u002Fglobal-header\u002Flogo.coreimg.png\u002F1617032958951\u002Flogo-white-bg.png",false,{"name":33,"sector":34,"country":35,"website":36,"websiteArchiveUrl":27,"websiteStatus":37,"websiteCheckedAt":12},"Oklahoma Tax Commission","Government","United States","oklahoma.gov\u002Ftax.html","active"]